Thursday, July 26, 2018

Looking for a little guidance on a simple Palo Alto firewall setup

For clarity let me preface with a diagram:

WAN -> ONT -> PA-220 eth1/1 -> eth1/2 -> Switch

I'm using a PA-200 in L3 configuration. I have a static IP range from the local admin of the building we are leasing in. My subnet mask is /29. The IP range is 130.x.x.250-254.

Current config:

Interfaces

  • eth1/1, L3, netmask: 130.x.x.250/29
  • eth1/2, L3, netmask: 192.168.2.0/29

Policies:

  • eth1/1 untrusted
  • eth1/2 trusted

Virtual Routers:

  • default, eth1/1, destination: 0.0.0.0/0, next hop: IP, 100.0.0.1

Virtual Wire:

  • deleted

I'm not able to identify the network from the test machine off the switch. I'm no network admin by trade (am a software architect), but we needed to spin up a remote office quicker than we could hire out.



No comments:

Post a Comment