Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
nflnetwork29
Advisor

1600 gateway NAT setting confusion

hello, 

I'm configuring a bunch of 1600's (quantum spark) in a hub and spoke type of topology.

1600's at the branches and 6200 at HQ. (ALL INTERNET TRAFFIC FLOWS VIA HQ)

and i see two NAT settings on the 1600's and i'm not quite sure how they should be set. 

1 - under internet connection > advanced settings

2023-02-13_15-27-41.png 

2 - under access policy 

 

2023-02-13_15-23-09.png

 

Do I want these both off?

5 Replies
PhoneBoy
Admin
Admin

You can turn both of these off, yes.
These rules are meant for Internet access from the LAN or other networks behind the device.

nflnetwork29
Advisor

that's fine but what happens if they conflict - which one takes priority?

PhoneBoy
Admin
Admin

I presume the one under Access Policy applies to all Internet connections versus the one under the specific Internet connection, which just applies to that one.

the_rock
Legend
Legend

As @PhoneBoy mentioned, the one under access policy would apply to EVERYTHING internal being natted when going outbound, so its more broad and would take precedence.

G_W_Albrecht
Legend Legend
Legend

Currently, both are set to the same: Do NOT hide internal networks = Hide internal Networks OFF

With one ISP, one should change if the other is changed...

CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events