NSa3700 replacing Netgear SRX5308 with Vlans
I'm trying to replace my existing Netgear SRX5308 with a NSa3700. I currently have a VLAN setup on port 2 of the Netgear that goes to an Adtran Netvanta 1544 switch. The link in the switch to the firewall is setup as a trunk and I have routes in the router pointed to the switch. This all works with the Netgear just fine. When I put the NSa3700 in place of the Netgear I cannot get any traffic to pass between the NSa3700 and Netvanta 1544 switch unless I change the Netvanta config from a trunk to an access VLAN. Once I do that everything from the Netvanta out through the NSa3700 seems fine, but I cannot access the Netvanta from my lan on the NSa3700. If I ping from the NSa3700 gui or ssh I can ping the Netvanta fine just not from a device connected to the LAN on X0. I do have the routes created in the NSa3700. What could I be missing?
Answers
I know nothing about SRX5308 but it could be the case that you have triangular routing with multiple gateways in each network. SonicOS will not like this.
https://community.sonicwall.com/technology-and-support/discussion/5110/layer-3-switch-inter-vlan-routing-with-tz400
I'm not finding any triangular routing. Thanks for the suggestion though.
Configure a packet capture, tick "Dropped packets only" and filter on the management traffic of interest.
Attempt connection.
Refresh the capture, check the dropped reason code [if any].
Show us your sanitized configs and a diagram if you want additional assistance.