Here's my setup -
1. Corporate Office has ASG220 running on 10.10.9.0/24
2. Remote Office has ASG120 running on 10.9.9.0/24
These 2 sites are connected over SSL site to site tunnel and everything is working great.
Now I want to throw a RED into the mix in a home office so it can see both of those networks. I want it setup up in standard/split mode where only traffic destine for #1 or #2 above goes over the tunnel the rest just uses the local internet connect.
The home office has a cable modem coming into it, and before the RED was put in place it was using a D-Link wireless router for DHCP and Wifi.
I can get it to work if I hang the RED off of the D-Link router but then I have both the RED acting as DHCP and the D-Link doing DHCP. That configuration looks like Cable Modem >> D-Link WAN then D-Link LAN >> RED WAN. When running in this mode I can ping both networks fine when I plug a computer right into a LAN port on the RED.
I'd much rather have Cable Modem >> RED WAN then RED LAN >> D-Link LAN so that the RED is doing all DHCP on this home office network and the D-Link is just acting as a passthrough switch for Wifi, but I never get back the blinking Internet light on the RED.
I think the first step is just leaving the D-Link out of the mix and connecting the RED WAN directly to the cable modem and then a computer to a RED LAN, but I've had no luck setting this up.
Here's the config so far
1. I have an Ethernet Standard interface setup for the RED with IP of 192.168.0.1 with 255.255.255.0/24
2. I have DHCP setup on the RED interface to start from 192.168.0.4, with a local DNS server on the corporate network and the domain set
3. Firewall rule says RED -> ANY -> ANY for now
4. NAT rule of RED -> External WAN of corporate office
5. On the RED Device Config page I have
Uplink mode = static address
Address = IP address from the cable modem
Netmask = 255.255.224.0
Default GW = Default gateway of cable modem
DNS Server = DNS from cable modem
Split networks = Corporate office LAN and Remote Office LAN
This is a long post, but hopefully we can figure this out. It's the last configuration step since the ASG 220 and ASG 120 setup are done and working great.
This thread was automatically locked due to age.