We have added a second ISP circuit. The ISP router is connected to e5 on the UTM 525 (Astaro 525). After a testing period, we will eventually move everything to the new circuit. In the mean time I have a policy route directing a few of our IT staff to the new circuit for testing.
Most is working well, except the RED's. From our desktops while on the old circuit, we could ping and remote to anything at the remote offices with REDs. Now, we can ping the gateway but nothing beyond that. Trace routes show that any IP other then the RED's gateway is routed out the new circuit and dies.
I can't find any rhyme or reason for this because the UTM "knows" where the RED's gateway is and should know that the rest of the subnet is behind the gateway. It's just layer 2 at this point.
Meanwhile, the remote test office can access HQ resources as normal. Our issue is remoting to the office from HQ.
Any input appreciated and thank you for having me.
Jerry
This thread was automatically locked due to age.