ProxySG & Advanced Secure Gateway

 View Only
  • 1.  How do I have two default gateways one for mgmt and one for interception?

    Posted Dec 12, 2018 07:52 AM

    Hi;

    I have port 0:0 as the management port with a default gateway associated with the default route domain and I want port 2:0 to have its own default route. Shall I create a new route domain, a new vlan and associate them with interface 2:0, which already has an IP address.

    then shall I define a Default gateway for the new route domain?

     

    Would this work?

     

    Kindly

    Wasfi



  • 2.  RE: How do I have two default gateways one for mgmt and one for interception?

    Posted Dec 12, 2018 07:59 PM
    By default, you have one and only default gateway. Basically, you have the default gateway that on the WAN interface, for all the unknow world of the internet. And you have the static routing internally.


  • 3.  RE: How do I have two default gateways one for mgmt and one for interception?

    Posted Dec 12, 2018 07:59 PM
    By default, you have one and only default gateway. Basically, you have the default gateway that on the WAN interface, for all the unknow world of the internet. And you have the static routing internally.


  • 4.  RE: How do I have two default gateways one for mgmt and one for interception?
    Best Answer

    Posted Dec 12, 2018 10:01 PM

    Hi Wasfi,

     

                  Routing domains can be used for your requirement even though a simple static route like Aboo mentioned could also help in this.



  • 5.  RE: How do I have two default gateways one for mgmt and one for interception?

    Posted Dec 12, 2018 10:30 PM

    Thank you Aravind and Abonaim



  • 6.  RE: How do I have two default gateways one for mgmt and one for interception?

    Posted Dec 13, 2018 05:09 AM

    Hi Guys

    Just a note that there are some caveats when implementing routing domains on the ProxySG/ASG.

    The following are limitations of the Routing Domains:
    - Overlapping subnets between routing domains are not supported.
    - The following traffic, services, and features can only use the default routing table:
    
    + All ProxySG appliance management traffic.
    + WCCP configuration on the appliance.
    + DNS, VLANs, ICAP services, forwarding hosts, and authentication servers configured on the appliance.
    + All requests originating from the appliance (for subscriptions, access log
    upload, SR upload, and so on).

    As per the Routing Domain Deployment Guide

    Hope that helps.

    Sean Doggett



  • 7.  RE: How do I have two default gateways one for mgmt and one for interception?

    Posted Dec 13, 2018 04:03 PM

    Thank you kindly Sean.This is very useful to know.

     

    Wasfi