Hi all,
I have a issue and I'm stuck, my setup is a 900d (vdomed) with 2 public ip ranges in the public interface (for vips).
In the lan interface is configured a /28 private lan with 5 host at the moment, but one of them (only one) doent get to internet.
To test this hay created a policy from land to wan any to any nated and nothing.
If I put a functional ip in the host is access internet correctly but nothing with any other ip.
if I sniff only see te echo request but no reply and don't see the match in the policy.
I dont know what to test next, any idea?
Thanks!!
UPDATE: I solved it minutes later of the post. The Vdom have 2 public gw, I dont know why but this host and only this host was trying to use the one is no supposed to.
I used de debug command on cli to figured it out:
diag debiug enable diag debug flow filter clear diag debug flow filter saddr <ip of your guest vm> diag debug flow trace start <numberofpackets>
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1661 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.