SonicOSX 7 System

Configuring Routed Mode

Routed Mode provides an alternative for NAT for routing traffic between separate public IP address ranges. Consider the topology in Routed Mode Configuration, where the security appliance is routing traffic across two public IP address ranges:

  • 10.50.26.0/24
  • 172.16.6.0/24

Routed Mode Configuration

Routed Mode Configuration

By enabling Routed Mode on the interface for the 172.16.6.0 network, NAT translations are automatically disabled for the interface, and all inbound and outbound traffic is routed to the WAN interface configured for the 10.50.26.0 network.

Routed Mode is available when using Static IP Mode for interfaces in the LAN, DMZ, and WLAN zones. For DMZ, it is also available when using Layer 2 Bridged Mode. Routed mode is not available for WAN mode.

To configure Routed Mode

  1. Navigate to NETWORK | System > Interfaces.
  2. Click the Configure icon for the appropriate interface. The Edit Interface dialog displays.
  3. Click Advanced.
  4. Scroll to the Expert Mode Settings section.

    Expert Mode Settings

  5. To enable Routed Mode for the interface, select Use Routed Mode - Add NAT Policy to prevent outbound\inbound translation. This option is not selected by default. When you select it, the next Expert Mode setting become available.
  6. From NAT Policy outbound/inbound interface, select the WAN interface that is to be used to route traffic for the interface. The default is Any.
  7. To specify the largest packet size (MTU – maximum transmission unit) that the interface can forward without fragmenting the packet, enter the size of the packets that the port receives and transmits in the Interface MTU field:
    Standard packets (default)1500
    Jumbo frame packets9000

    Jumbo frame support must be enabled before a port can process jumbo frames. Because of jumbo frame packet buffer size requirements, jumbo frames increase memory requirements by a factor of 4.

    If Bandwidth Management has been enabled on the appliance, the Bandwidth Management section displays. To configure BWM for this interface, go to Enabling Bandwidth Management on an Interface.

  8. Click OK.

The appliance creates “no-NAT” policies for both the configured interface and the selected WAN interface. These policies override any more general M21 NAT policies that might be configured for the interfaces.

Was This Article Helpful?

Help us to improve our support portal

Techdocs Article Helpful form

  • Hidden
  • Hidden

Techdocs Article NOT Helpful form

  • Still can't find what you're looking for? Try our knowledge base or ask our community for more help.
  • Hidden
  • Hidden