Monday, September 10, 2018

PA-200 setup help (part 2)

X-post from Palo Alto subreddit.

Following up from my last post I was finally able to make it back out to the satellite office and once again I'm stuck.


I'm no network administrator, but I'm losing my mind with this setup.

I have a fiber line into a termination appliance (Cisco ME4601). Cat6 into PA-200 eth1/1. Then, eth1/2 into a luxul xap1500.

I have a static IP range of 155.85.56.250/29, subnet is 255.255.255.248, gateway is 155.85.56.249.

I set up an L3 eth1/1 interface, untrusted, static IP 4 address (155.85.56.250/29). Default virtual router destination 0.0.0.0/0, next hop is 155.85.56.249.

2-4 interfaces are all the same, layer 2, trusted default vlan. I updated the vlan with the proper internal routing. I have no issues with using the DHCP server settings to ping/assign internal ips.

For whatever reason I can't get an external connection. If I ssh into the pa-200 I can see my routing table and it looks fine but if I ping any external address it can't connect.

Anywhere I should look at first?



No comments:

Post a Comment