无法 ping 过去的防火墙

网络工程 路由 加强
2022-02-25 19:01:59

我正在尝试通过防火墙进行通信,但我无法通过防火墙 ping 任何东西。

PC1:172.16.201.22 <-> 路由器:172.16.192.1 <-> Firewall_Port1:10.10.10.4 <-> Firewall_Port2:192.168.11.201 <-> PC2:192.168.11.221

路由器配置

interface GigabitEthernet0/0
 description
 ip address 10.10.10.2 255.255.255.248
 ip access-group ESP_in in
 no ip redirects
 no ip unreachables
 no ip proxy-arp
 no ip route-cache
 standby 1 ip 10.10.10.1
 duplex auto
 speed auto
!
interface GigabitEthernet0/1
 mtu 9576
 no ip address
 no ip route-cache
 duplex auto
 speed auto
!
interface GigabitEthernet0/1.101
 encapsulation dot1Q 101
 ip address 172.16.96.2 255.255.240.0
 no ip redirects
 no ip unreachables
 no ip proxy-arp
 no ip route-cache
 standby 101 ip 172.16.96.1
!
interface GigabitEthernet0/1.201
 encapsulation dot1Q 201
 ip address 172.16.192.2 255.255.240.0
 no ip redirects
 no ip unreachables
 no ip proxy-arp
 no ip route-cache
 standby 201 ip 172.16.192.1
!
!
ip route 172.16.16.0 255.255.255.0 10.10.10.4
ip route 172.16.96.0 255.255.240.0 10.10.10.4
ip route 192.168.1.0 255.255.255.0 10.10.10.4
ip route 192.168.11.0 255.255.255.0 10.10.10.4
!

防火墙静态 IP

防火墙接口

政策

1个回答

我试图与过去的防火墙通信的设备没有配置默认网关 IP...