I have a BOVPN Virtual Interface with BGP. The admin at the remote end wants me to NAT my private network to an IPv4 range that works for him. I've used NAT on non-virtual BOVPN by configuring it in the Tunnel Route Settings. For BOVPN Virtual, on the VPN Routes tab, I do not have an option to specify NAT info. How can I…
Hi all Looking on how to set up multiple sites with two devices per site using site to site vpns. I'm looking at what the network diagram would look like with that setup. Specifically having two site to site vpns per site. What would the connectivity look like? If using BGP for failover what would that configuration look…
I use 3cx for off site voip pbx. What is the proper setup to make sure voip traffic going through the watchguard is prioritizing voip traffic, please be specific. Below is my current setup. Firewall -> Aliases Name: Voip Members: Host IPv4: (pbx public ip address) FQDN: (pbx public dns address) Network -> SD-WAN Name: Voip…
Hello, I've got a FTTH connexion with an ONT + ISP router + Firebox router. In order to remove my ISP box and connect the Firebox directly to the ONT, I need to create a VLAN with a specific ID used by an external interface ("wan 1"). In that VLAN (so in External Zone), I have to use the DHCP Client and send few custom…
Hi I have a reachability issue with a server published via SNAT. Let me describe the scenario. The server is located at site A, while it is published through a public IP at site B. Site A and site B are connected through a BOVPN, and within the tunnel there is an "any IP" <--> server private IP route. The policy publishing…
Hello from munich, has anybody an idea of what could cause the following behaviour: When doing a Nessus-Scan from VLAN A to VLAN B after some time (Whether existing or non-existent IP addresses are scanned, regardless of the throttling applied) the whole TCP/UDP communication in ALL VLANs (also those not affected by the…
Apologies if this is already a well known thing, but I failed to find info about it when I was researching it. I was looking how a firebox could inject "classic" IPSec routes into OSPF, so that the rest of our network could use the routes, rather than having to declare them as static routes on internal routers behind the…
Hello everyone, Sorry if this topic has already been discussed, but I haven't been able to find the answer to my question. In an infrastructure with Active Directory (DNS) servers in the cloud connected via IPsec VPN to WatchGuard appliances at branch offices where there are only Windows PCs, what are WatchGuard engineers’…
Hello, I setup a Pantech UML295 USB modem on WatchGuard Firebox T15 for Internet redundancy many years ago, and I am trying to troubleshoot it now remotely, because the users were not able to connect to Internet when the main Internet connection went down. So, I use Network tab of Diagnostics page in WebUI to ping -I eth0…
I recently discovered I can do a traceroute to say 192.168.100.101, and the traffic is allowed out the external interface via the Outgoing policy. The traffic made it a few hops and was dropped by my ISP. I was surprised that BOGON addresses aren't just dropped at the firebox. Is there any easy way to block BOGON address…
It looks like you're new here. Sign in or register to get started.