Configuring Proxy ARP for Manual NAT Symptoms After creating a Manual Static NAT rule, Security Gateway does not answer the ARP Requests for the Static NATed IP address that was configured in the Manual NAT rule. Security Gateway replies to ARP requests with a wrong MAC address, mostly for the NAT traffic. Introduction Let us consider the following scenario: Two networks ( Network_A and Network_B ) are separated by a Security Gateway (single Security Gateway or ClusterXL). On each network, there is a host ( Host_A on Network_A , Host_B on Network_B ). Let us assume, that Network_A represents the Internal network, and Network_B represents the External network. According to the existing standards, when Host_B needs to send data to Host_A , an ARP Request for the MAC address of Host_A will be sent by Host_B to Network_B . Since Host_A is located on another network, and the Security Gateway acts as a router, this ARP Request (sent
Comments
Post a Comment