Important Notice: Our web hosting provider recently started charging us for additional visits, which was unexpected. In response, we're seeking donations. Depending on the situation, we may explore different monetization options for our Community and Expert Contributors. It's crucial to provide more returns for their expertise and offer more Expert Validated Answers or AI Validated Answers. Learn more about our hosting issue here.

Why traffic redirect/static/policy route be blocked by ZyWALL?

0
Posted

Why traffic redirect/static/policy route be blocked by ZyWALL?

0

ZyWALL is an ideal secure gateway for all data passing between the Internet and the LAN/DMZ. For some reasons (load balance or backup line), users may want traffic to be re-routed to another Internet access devices while still be protected by ZyWALL. In such case, the network topology is the most important issue. Here is a common example that people mis-deploy the LAN traffic redirect and static route. The above figure indicates the “triangle route” topology. It works fine if you turn off firewall function on ZyWALL box. However, if you turn on firewall, your connection will be blocked by firewall because of the following reason. Step 1. Being the default gateway of PC, ZyWALL will receive all “outgoing” traffic from PC. Step 2. And because of Static route/Traffic Redirect/Policy Routing, ZyWALL forwards the traffic to another gateway (ISDN/Router) which is in the same segment as ZyWALL’s LAN. Step 3. However the return traffic won’t go back to ZyWALL, in stead, the “another gateway (I

Related Questions

What is your question?

*Sadly, we had to bring back ads too. Hopefully more targeted.

Experts123