AnsweredAssumed Answered

Weird Networking configuration Question

Question asked by Amir Arama on Aug 22, 2018
Latest reply on Aug 22, 2018 by Amir Arama

Hi,

it might be dummy question, just thinking out loud, maybe someone knows a way of making this work.

 

I have a FW with Lan interface (let's say eth0) with address: 192.168.1.254/16 (note the subnet)

this network includes servers, PCs, Printers etc.. now i'm required to do segmentation inside this network.

i want to keep this address range (not use 172.16./10.x.x.x.).

i thought of how can i accomplish this step at a time, without taking down the whole network to maintanance.

my quesion is as follows:

if i will create new interface (eth2) with address 192.168.2.254/24 and i will move some servers to this network.

1. is it supported to create interface with address that included/conflicted with other interface?

2.i need that the PCs and other Servers/devices still located on 192.168.0.0/16 network to keep communicating with the servers moved to 192.168.2.0/24 network. so i think how it might work is that FW should know to reply to arp request to servers on 192.168.2.0, and to respond on behalf (proxy arp) and then move the packet to 192.168.2.0 int, and packets to 192.168.0.0 expect from 192.168.2.0 will go to the 192.168.0.0/16 int. and also on the opposite direction that arp request to 192.168.3.0 for example from within 192.168.2.0 will respond by the fw and let the communication occur.

 

is anyone knows a way to make this happen ?

thanks

Outcomes