How can I configure secondary subnet on LAN interface for firewall management purpose?
11/30/2023 98 People found this article helpful 507,089 Views
Description
This article explains how to configure a Secondary subnet on the LAN interface to manage the SonicWall appliance.
Resolution
EXAMPLE: We are using the Network below as a example for this article.
LAN IP (x0 IP) | 192.168.41.168/24 |
Secondary LAN subnet | 192.168.40.0/24 |
Secondary LAN IP (X0_IP2) | 192.168.40.1/24 |
Resolution for SonicOS 7.X
This release includes significant user interface changes and many new features that are different from the SonicOS 6.5 and earlier firmware. The below resolution is for customers using SonicOS 7.X firmware.
Procedure
- Create Address Objects for the secondary IP and subnet
- Create Static Route
- Create NAT Policy
- Create Access Rule
Creating Address Objects for the secondary IP and subnet on LAN X0 interface.
- Login to the SonicWall management Interface.
- Click Object ,navigate to Match Objects | Addresses, click Add, create the address objects shown below.
- Click OK.
Creating a Static Route
- Navigate to Policy | Rules and Policies | Routing Rules, click Add.
- Click OK.
Creating a NAT Policy
- Navigate to Rules| NAT Policies, click Add, create the following NAT entry.
Creating the LAN to LAN Access Rule
Navigate to Policy |Rule & Policies |Access rule select Matrix and then click LAN-LAN arrow.
Resolution for SonicOS 6.5
This release includes significant user interface changes and many new features that are different from the SonicOS 6.2 and earlier firmware. The below resolution is for customers using SonicOS 6.5 firmware.
Procedure
- Create Address Objects for the secondary IP and subnet
- Create Static Route
- Create NAT Policy
- Create Access Rule
Creating Address Objects for the secondary IP and subnet on LAN X0 interface.
- Login to the SonicWall management Interface.
- Click MANAGE ,navigate to Objects | Address Objects, click Add, create the address objects shown below.
- Click OK.
Creating a Static Route
- Navigate to Network | Routing, click Add.
- Click OK.
Creating a NAT Policy
- Navigate to Rules| NAT Policies, click Add, create the following NAT entry.
Creating the LAN to LAN Access Rule
- Navigate to Rules | Access Rules, select Matrix and then click LAN-LAN arrow.
NOTE: Option Enable Management should be checked in the access rules.
See also:
How to configure secondary IP address on WAN interface for firewall management purpose
Related Articles
Categories
Was This Article Helpful?
YESNO