This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

dual ISP routing issue

Hello,

I currently have two ISP gateways connected to my UTM appliance. Uplink balancing is working. One of the ISPs provides a Cable Modem with wireless built in. I would like to use the Cable Modem's internal ports and/or it's wireless to access the internet in my lab essentially bi-passing my UTM since i would not be connecting through the UTM's internal interface. Since my UTM is physically plugged into one of it's internal ports, as a router it has learned the IP address of of the WAN interface of the cable modem and shows this line in the routing table:

default via xxx.xxx.xxx.xxx (I have obscured the IP address) dev eth1 table 221 proto kernel onlink

When I connect using my computer to one of the Cable Modem's ports i have total access to the internet with the exception of the Additional Addresses on the Wan interface of my UTM for the other ISP.

I'm assuming that when I attempt to access any of the Public IPs on the other ISP interface, since it knows how to route to the source IP it sends it to directly to the Cable Modems internal port that it's connected to instead of back through the internet through the WAN interface. However I have been unable to confirm that. 

I have tried setting up a policy route that when traffic comes in for one of the specific addresses, it goes back out the same WAN interface hoping that would stop the routing out the wrong WAN interface. Does this make sense to anybody? Any suggestions as to what may be happening here and how i can fix the issue?



This thread was automatically locked due to age.
Parents Reply
  • Thanks for the sketch. Agree to Bob logs could be helpful.
    Are you trying to access by name or IP? What is DNS resolver of the lab computer.
    One could try to get a few traces of traffic at different interfaces. 
    Do you have multipath rules in place? So traffic of published services uses eth4.

    Best regards

    Alex  

    -

Children
No Data