Tuesday, September 10, 2019

ARP, Static NAT, single VLAN, 3000 devices

I have 150 nodes that have IPTables running a static NAT to 20 devices behind it. There are 25 of these nodes (along with the 20 devices behind it) in each of 6 /23 networks. Each of the 150 nodes is also connected via a wireless bridge and all of these devices are on a single VLAN. All equipment is Cicso & Industrial Ethernet rated and the wireless controller runs in the centralized traffic configuration and not FlexNet.

What is the ARP behavior look like in this environment?

Isn't the protocol limited to the subnet, regardless of how large the VLAN is?

Does the ARP of the devices behind the static NAT traverse the NAT since its 1:1, or would an ARP even happen since it's on a different subnet (192.168.1.0 -> 10.100.100.0)?

The only devices that would actually ARP on the 10.100.100.0 network would be nodes running the IPTables NAT, correct?

The main reason I'm asking is this is the current proposed schema, so I cannot physically test this network yet, but it makes sense to me that this should be a solid configuration using some basic best practices (i.e. keep your IP count below a /22, etc.).

Is there any major concerns with this configuration?

EDIT: Thanks for sorting by New!



No comments:

Post a Comment