cancel
Showing results for 
Search instead for 
Did you mean: 
Create a Post
HS
Nickel

Add proxy arp entries on R80.20 VSX

Hi,

we will migrate security gateway from R77.30 to R80.20 in VSX. 
We have some proxy arp entries on our gateway but in R80.20 there don't use "/opt/CPsuite-R77/fw1/CTX/CTX00001/conf/local.arp" file. 

How we add the entries without the local.arp file? Now it is kernel based .

0 Kudos
1 Reply
Highlighted
Wolfgang
Gold

Re: Add proxy arp entries on R80.20 VSX

Hello HS,

 

ther's a simple way to add a proxy arp entry to a gateway without configuring via the GAiA portal/ clish or using local.arp

Add a host object with your external IP to your rulebase and configure automatic NAT (static). As NAT-IP use the same external IP, add the relevant gateway and do a policy install. With this host object the gateway adds an proxy arp entry to the the gateway with the correct MAC.

We use this with loadsharing bond and active/passive bond and VSX. It works too with vMAC.

Wolfgang

proxy_arp1.PNGproxy_arp2.PNG