I have a cable connection running to our FW. We are supplanting that connection with another fiber connection to be used on a separate LAN.
The cable connection and LAN is running fine.
If I connect the fiber connection (they are NATing a public ip to a private that they gave us), and set the ip address a mask as instructed (the local ip address they gave us) to a laptop, it works and I can surf as expected. But, I can not get the connection to work through our FW. I have tried many different configurations.
X0 <- cable
X1 <- lan
X2 <- fiber
X3 <- fiber_lan
X0 is WAN, and I've tried X2 as both WAN and as a separate interface with Static ip set to their instructed local ip--not sure which is correct--neither worked (probably because something else was misconfigured).
Then Routes:
This part is confusing... When asked for source, I assume where the traffic will enter the FW from. Destination, I assume where the packet is supposed to go. Gateway, I assume the GW of the interface it should go to (?). Interface, well, I guess I assume the interface that should be used (not where it came in).
So for X2 the route is something like:
Source : X2
Destination: X3 subnets
Svc: any
Gateway: X3 GW
Interface: X3
Then X3:
Source : X3
Destination: any
Svc: any
Gateway: X2 GW
Interface: X2
According to the packet monitor, it looks like packets are getting forwarded to the proper destination from fiber_lan to WAN, but nothing is coming back in.
Also, is multicast support needed for this to work properly? We are planning on using VOIP so QoS is planned if that matters.
Thanks.