Hello, I am trying to understand the enhanced L2 bridged mode provided by sonicwall. Here is my network scenario: LAN Trusted X0 X2 X3 X5 WAN Untrusted X1 DMZ Public X4
X1: IP: 192.168.13.83/20 with gateway at 192.168.13.25/20 X0 (primary iface) bridged to X2 (secondary iface). The bridge-pair shares an IP (10.20.20.83/24) for management and for accessing the device.
I am able to surf the INTERNET as I have not set any specific filters. Additionally in the Firewall->Access Rules I have set the LAN-WAN and the WAN-LAN rules to accept all. I am basically trying to ping the WAN interface from my box which is at 10.20.20.85/24 with its gateway set to 10.20.20.83/24. I am using the packet monitor to monitor all ICMP packets with the SRC ip address of 10.20.20.85 and dst IP of
192.168.13.83 but I can't see nothing in the packet monitor. Then I remove the ICMP restriction in the configuration of the packet monitor. Now what I see looks like garbage to me but I sure think it says something which I as a relative newbie might not be aware of. I am attaching a txt of the packet capture. I am keen to hear from you people about what may be wrong here.Heres the TXT of the capture: Code:
--File Index : 1.-- --18 packets captured.-- -----Statistics------------ Number Of Bytes Failed To Report: 0 Number Of Packets Forwarded : 0 Number Of Packets Generated : 0 Number Of Packets Consumed : 0 Number Of Packets DROPPED : 18 Number Of Packets Status Unknown: 0 *Packet number: 1* Header Values: Bytes captured: 64, Actual Bytes on the wire: 64 Packet Info(Time:06/29/2010 16:28:25.176): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id:
17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x32(0x32), Src=[00:1a:c1:55:7a:83], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 0000001a c1557a83 00324242 03000000 00008000 *.........Uz..2BB........* 001ac155 7a800000 00008000 001ac155 7a808001 00001400 *...Uz..........Uz.......* 02000f00 009b6782 00000008 00000000 *......g......... * *Packet number: 2* Header Values: Bytes captured: 60, Actual Bytes on the wire: 60 Packet Info(Time:06/29/2010 16:28:25.720): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x2e(0x2e), Src=[00:19:30:f7:3f:26], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 00000019 30f73f26 002e4242 03000000 00008000 *........ 0.?&..BB........* 001b5443 62300000 00008000 001b5443 62308017 00001400 *..TCb0........TCb0......* 02000f00 00000000 00000000 *............ * *Packet number: 3* Header Values: Bytes captured: 64, Actual Bytes on the wire: 64 Packet Info(Time:06/29/2010 16:28:27.176): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x32(0x32), Src=[00:1a:c1:55:7a:83], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 0000001a c1557a83 00324242 03000000 00008000 *.........Uz..2BB........* 001ac155 7a800000 00008000 001ac155 7a808001 00001400 *...Uz..........Uz.......* 02000f00 ae9f268d f40cbffb 00000000 *......&......... * 1 of 6 *Packet number: 4* Header Values: Bytes captured: 60, Actual Bytes on the wire: 60 Packet Info(Time:06/29/2010 16:28:27.784): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x2e(0x2e), Src=[00:19:30:f7:3f:26], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 00000019 30f73f26 002e4242 03000000 00008000 *........ 0.?&..BB........* 001b5443 62300000 00008000 001b5443 62308017 00001400 *..TCb0........TCb0......* 02000f00 00000000 00000000 *............ * *Packet number: 5* Header Values: Bytes captured: 64, Actual Bytes on the wire: 64 Packet Info(Time:06/29/2010 16:28:29.176): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x32(0x32), Src=[00:1a:c1:55:7a:83], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 0000001a c1557a83 00324242 03000000 00008000 *.........Uz..2BB........* 001ac155 7a800000 00008000 001ac155 7a808001 00001400 *...Uz..........Uz.......* 02000f00 009b6782 01000008 00000000 *......g......... * *Packet number: 6* Header Values: Bytes captured: 60, Actual Bytes on the wire: 60 Packet Info(Time:06/29/2010 16:28:29.704): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x2e(0x2e), Src=[00:19:30:f7:3f:26], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 00000019 30f73f26 002e4242 03000000 00008000 *........ 0.?&..BB........* 001b5443 62300000 00008000 001b5443 62308017 00001400 *..TCb0........TCb0......* 02000f00 00000000 00000000 *............ * *Packet number: 7* Header Values: Bytes captured: 64, Actual Bytes on the wire: 64 Packet Info(Time:06/29/2010 16:28:31.192): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x32(0x32), Src=[00:1a:c1:55:7a:83], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 0000001a c1557a83 00324242 03000000 00008000 *.........Uz..2BB........* 001ac155 7a800000 00008000 001ac155 7a808001 00001400 *...Uz..........Uz.......* 2 of 6 02000f00 009b6782 00000008 00000000 *......g......... * *Packet number: 8* Header Values: Bytes captured: 60, Actual Bytes on the wire: 60 Packet Info(Time:06/29/2010 16:28:31.704): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x2e(0x2e), Src=[00:19:30:f7:3f:26], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 00000019 30f73f26 002e4242 03000000 00008000 *........ 0.?&..BB........* 001b5443 62300000 00008000 001b5443 62308017 00001400 *..TCb0........TCb0......* 02000f00 00000000 00000000 *............ * *Packet number: 9* Header Values: Bytes captured: 64, Actual Bytes on the wire: 64 Packet Info(Time:06/29/2010 16:28:33.208): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x32(0x32), Src=[00:1a:c1:55:7a:83], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 0000001a c1557a83 00324242 03000000 00008000 *.........Uz..2BB........* 001ac155 7a800000 00008000 001ac155 7a808001 00001400 *...Uz..........Uz.......* 02000f00 009b6782 01000008 00000000 *......g......... * *Packet number: 10* Header Values: Bytes captured: 60, Actual Bytes on the wire: 60 Packet Info(Time:06/29/2010 16:28:33.848): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x2e(0x2e), Src=[00:19:30:f7:3f:26], Dst=[01:80:c2:00:00:00] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: 0180c200 00000019 30f73f26 002e4242 03000000 00008000 *........ 0.?&..BB........* 001b5443 62300000 00008000 001b5443 62308017 00001400 *..TCb0........TCb0......* 02000f00 00000000 00000000 *............ * *Packet number: 11* Header Values: Bytes captured: 98, Actual Bytes on the wire: 98 Packet Info(Time:06/29/2010 16:28:34.160): in:X1*(interface), out:--, DROPPED, Drop Code: 1, Module Id: 17, (Ref.Id: _2068_joqvuIppl), 1:1) Ethernet Header Ether Type: 0x54(0x54), Src=[00:1c:c0:34:5e:54], Dst=[ff:ff:ff:ff:ff:ff] Ethernet Type: Unknown Value:[0] Hex and ASCII dump of the packet: ffffffff ffff001c c0345e54 0054e0e0 03ffff00 50001400 *.........4^T.T......P...* 3 of 6 000000ff ffffffff ff045500 00000000 1cc0345e 54045500 *..........U.......4^T.U.* 00000000 00000000 00000000 00000000 00000000 00000000 *........................* 00000000 00000000 01313932 2e313638 2e312e31 30352020 *.........192.168.1.105 * 20ff- . *
- . *
- . *
Lastly, all the interfaces of the Sonicwall device has the same hardware address which comes as a surprise to me. Aren't all interfaces supposed to have different MAC addresses? Or has some kind of Bonding been applied inside of the device? IS there a way to configure this?