D-Link Forums

The Graveyard - Products No Longer Supported => D-Link NetDefend Firewalls => Topic started by: trickykid777 on October 22, 2009, 01:59:45 AM

Title: DFL-800 Alias not working
Post by: trickykid777 on October 22, 2009, 01:59:45 AM
Hi there, my LAN IP is configured as 10.0.0.1 on the lan interface. I added 10.0.0.17 as an alias to the arp table as shown in the manual, yet the IP is not getting picked up. Any ideas?

ARP cache of iface lan
  Dynamic 10.0.4.8         = 00-13-02-43-f1-7b   Expire=856
  Dynamic 10.0.2.6         = 00-16-76-10-9d-1b   Expire=861
  Dynamic 10.0.2.7         = 00-11-11-d4-35-aa   Expire=858
  Dynamic 10.0.4.13        = 00-1f-3b-2f-69-f1   Expire=854
  Dynamic 10.0.2.12        = 00-13-20-5e-e0-68   Expire=854
  Dynamic 10.0.0.10        = 00-07-e9-82-c1-c2   Expire=854
  PUBLISH 10.0.0.17        = 00-13-46-3d-81-24
  Dynamic 10.0.2.21        = 00-13-20-13-a4-24   Expire=857
  Dynamic 10.0.2.22        = 00-13-20-12-e3-6e   Expire=854
  Dynamic 10.0.2.26        = 00-11-11-ae-33-05   Expire=854
  Dynamic 10.0.2.38        = 00-16-76-10-b5-35   Expire=856
  Dynamic 10.0.2.32        = 00-0f-3d-88-96-ec   Expire=858
  Dynamic 10.0.2.48        = 00-11-11-d4-35-d7   Expire=854
  Dynamic 10.0.2.60        = 00-19-d1-4d-a7-10   Expire=867
  Dynamic 10.0.2.69        = 00-19-21-88-18-39   Expire=859
  Dynamic 10.0.2.67        = 00-15-b7-35-23-54   Expire=854
  Dynamic 10.0.2.77        = 00-16-76-1b-7a-81   Expire=895
  Dynamic 10.0.2.72        = 00-19-d1-e4-de-66   Expire=864
  Dynamic 10.0.2.85        = 00-1b-24-97-58-a3   Expire=874
  Dynamic 10.0.2.86        = 00-19-d1-6d-92-01   Expire=859
Title: Re: DFL-800 Alias not working
Post by: Fatman on October 22, 2009, 09:11:44 AM
Where and how is the IP not getting picked up?
Title: Re: DFL-800 Alias not working
Post by: trickykid777 on October 23, 2009, 06:26:21 AM
I can't ping it; however, arping confirms the entry exists. I'm fairly new to the DFL so I am guessing I have to add IP Rules to allow access to this alias?
Title: Re: DFL-800 Alias not working
Post by: Fatman on October 23, 2009, 08:34:19 AM
If pinging it is the only problem then modify the existing IP rule you have that allows you to ping the primary address and change the destination network to an IP Group which includes both the secondary and primary addresses.