Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Saurabh_Bajpai
Participant

Traffic of MGMT VLAN is routing from CP MGMT INterface instead of P2P interface

Dear Mates,

I have configured 192.168.1.40/24 ip in Mgmt interface which is connect to LAN Switch

I have add route on cp as 192.168.1.0/24 with next hope - 10.10.10.2

PC of lan are access internet from 1.40(MGMT Interface) instead of P2P interface between 2 FW.

Pls help me to resolve such issue that if 1.0/24 user access internet/other internal subnet, traffic will go from 10.10.10.0/29 link only.

LAN Diagram is attached for your reference.

Pls help to resolve such issue.

 

0 Kudos
2 Replies
PhoneBoy
Admin
Admin

From your diagram, it looks like your management has three interfaces, one of which is directly connected to the Internet. 
Unless you installed your management as a standalone gateway (gateway + management), it does not include any sort of firewall.
Needless to say: this is NOT best practice at all.

Your management server should only be connected to the LAN switch and not via the other interfaces.

0 Kudos
Chris_Atkinson
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

Connected interface routes typically are higher priority than static routes, moreover the Mgmt interface shares the same routing table unless you activate MDPS.

CCSM R77/R80/ELITE
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events