Half my rules working, half not
-
Okay, this is frustrating.
I tried to swap our firewall in our datacenter this morning early after setting up identical rules on an Alix box to the SG560 that's currently in there. I got it swapped, and half our port forwards did not work. The weird thing is that there is only one Alias port group for NAT, we run 6 identical servers running the same processes, just on different IP internal IP addresses. Of the 6, 3 worked just fine, 3 did not nat properly.
I originally setup the Virtual IP's as Proxy ARP addresses, but none of them worked. I then switched them to "other" and then they seemed to start working.
Any ideas?
-
Upstream equipment probably had the MAC addresses of the old box in its ARP cache.
-
Upstream equipment probably had the MAC addresses of the old box in its ARP cache.
Interesting, let me check on that. I need to replace that firewall and am not having a great experience with it.