Guest VM can't get internet access through firewall VM


Howard Ritchie

I'm doing the following network setup (using firewall for the first time) and it's not working, not sure where the problem is.

I have a Fortigate VM firewall port 1 IP 192.168.132.5 on VMWare's vmnet8 (NAT), the host vmnet8 IP is 192.168.132.1, and the guest VM IP is issued by DHCP from the firewall (working).

I have a static route between the firewall and the host vmnet

The firewall VM and the guest VM can ping the host vmnet8 interface but cannot access the internet.

I created a policy to allow WAN on the LAN IP (guest VM).

Anything I miss.

Thank you

Guest VM IP

WAN & LAN IP settings

Static Route between firewall port 1 and host vmnet8

Internet Policy

Host vmnet8 IP

Howard Ritchie

Now, this issue has been resolved.

What happened is that I set the manual IP address of WAN port 1 and static route gateway to the IP address of laptop vmnet8, which is 192.168.132.1.

What I've tried is to have DHCP assign an IP address to the WAN port IP, and have the static route get the IP address dynamically (this is an option in the static route that only shows up when the DHCP IP is allowed to be assigned to WAN port 1.

I see that the static route IP is 192.168.132.2 assigned dynamically (my laptop vmnet8 IP is 192.168.132.1), now I just don't understand who assigned this IP to the static route, if it's VMware DHCP, how or What is it assigned to, or is it just something between VMWare and Fortigate.

What I noticed is that the DHCP IP for the WAN is 192.168.132.152, not 192.168.132.2 or 3 or 4 etc, I tested this twice.

Tracert for guest client VM

tracert 8.8.8.8

Tracing route to google-public-dns-a.google.com [8.8.8.8]
over a maximum of 30 hops:

  1   <1 ms   <1 ms   <1 ms 192.168.15.10
  2   <1 ms   <1 ms   <1 ms 192.168.132.2 >>> IP first assigned dynamically by fortigate, then I set the same IP manually and it works.
  3   22 ms   5 ms   6 ms 192.168.1.254
  4   6 ms   14 ms   14 ms 192.168.10.1
  5   26 ms   20 ms   21 ms 10.8.15.1
  6   *     22 ms   18 ms 89.19.65.170
  7   *     36 ms   25 ms 89.19.65.201
  8   37 ms   79 ms   16 ms 74.125.244.1
  9   15 ms   25 ms   17 ms 72.14.239.219
10   17 ms   20 ms   15 ms google-public-dns-a.google.com [8.8.8.8]

Trace complete.

Related


Guest VM can't get internet access through firewall VM

Howard Ritchie I'm doing the following network setup (using firewall for the first time) and it's not working, not sure where the problem is. I have a Fortigate VM firewall port 1 IP 192.168.132.5 on VMWare's vmnet8 (NAT), the host vmnet8 IP is 192.168.132.1,

Guest VM can't get internet access through firewall VM

Howard Ritchie I'm doing the following network setup (using firewall for the first time) and it's not working, not sure where the problem is. I have a Fortigate VM firewall port 1 IP 192.168.132.5 on VMWare's vmnet8 (NAT), the host vmnet8 IP is 192.168.132.1,

Can't get to internet in VM through another VM (vmware)

Veerendra Kakumanu VM-1(CentOS7) eht0-10.10.10.10/24 Gateway:0.0.0.0 eth1-Bridged Network to wlan0 eth2-192.168.3.10/24 Gateway:0.0.0.0 VM-2(Ubuntu14) eth0-10.10.10.11/24 Gateway:0.0.0.0 eth1-192.168.2.11/24 Gatew

Can't get to internet in VM through another VM (vmware)

Veerendra Kakumanu VM-1(CentOS7) eht0-10.10.10.10/24 Gateway:0.0.0.0 eth1-Bridged Network to wlan0 eth2-192.168.3.10/24 Gateway:0.0.0.0 VM-2(Ubuntu14) eth0-10.10.10.11/24 Gateway:0.0.0.0 eth1-192.168.2.11/24 Gatew

Guest VM as firewall for other Guest VM

са_никуз Maybe you can help me a bit. I am new to VM player.. I have Host - win 7 and two Guests on VM player. Kali Linux and Windows xp. I have troubles with setting network connections. Task is to create firewall on Linux machine for windows xp machine. So I

Guest VM as firewall for other Guest VM

са_никуз Maybe you can help me a bit. I am new to VM player.. I have Host - win 7 and two Guests on VM player. Kali Linux and Windows xp. I have troubles with setting network connections. Task is to create firewall on Linux machine for windows xp machine. So I

Windows 8 Hyper-V guest VM internet access

Cory Plastek I'm running Windows 8 Pro with Hyper-V enabled to run some Windows virtual machines on my workstation. For the guest VMs, I want them to be able to access network resources outside the host network, including the Internet. Here's what I've tried s

Windows 8 Hyper-V guest VM internet access

Cory Plastek I'm running Windows 8 Pro with Hyper-V enabled to run some Windows virtual machines on my workstation. For the guest VMs, I want them to be able to access network resources outside the host network, including the Internet. Here's what I've tried s

Can't connect to internet in VirtualBox VM - Ubuntu

Milad Na I have installed Ubuntu on a VM in VirtualBox and created 2 clones from it. Everything was fine, but after a while the internet connection failed for all VMs in VirtualBox. Here are the network settings: bridge adapter allow all (I also checked allow

Can't connect to internet in VirtualBox VM - Ubuntu

Milad Na I have installed Ubuntu on a VM in VirtualBox and created 2 clones from it. Everything was fine, but after a while the internet connection failed for all VMs in VirtualBox. Here are the network settings: bridge adapter allow all (I also checked allow

Can't connect to internet in VirtualBox VM - Ubuntu

Milad Na I have installed Ubuntu on a VM in VirtualBox and created 2 clones from it. Everything was fine, but after a while the internet connection failed for all VMs in VirtualBox. Here are the network settings: bridge adapter allow all (I also checked allow

Google VM Instant - Can't access SSH

Jeff I have installed ERPNext from Google Click to Deploy since 6 months ago and with that software it worked until last week until I lost access to the system and SSH When connecting using SSH, the system shows that connecting through the Cloud Identity-Aware

Google VM Instant - Can't access SSH

Jeff I've installed ERPNext from Google Click to Deploy since 6 months ago and with that software it worked until last week until I lost access to the system and SSH When connecting using SSH, the system shows that connecting through the Cloud Identity-Aware p

Can't access Apache on VM via LAN

Swartz I installed a CentOS machine on VMware Fusion and connected it to the LAN via a bridge connection. everything works fine and i can Surf the Internet from the guest computer. Ping other network machines from the guest. Ping the guest computer from the ho

Google VM Instant - Can't access SSH

Jeff I have installed ERPNext from Google Click to Deploy since 6 months ago and with that software it worked until last week until I lost access to the system and SSH When connecting using SSH, the system shows that connecting through the Cloud Identity-Aware

Google VM Instant - Can't access SSH

Jeff I've installed ERPNext from Google Click to Deploy since 6 months ago and with that software it worked until last week until I lost access to the system and SSH When connecting using SSH, the system shows that connecting through the Cloud Identity-Aware p

Can't access Apache on VM via LAN

Swartz I installed a CentOS machine on VMware Fusion and connected it to the LAN via a bridge connection. everything works fine and i can Surf the Internet from the guest computer. Ping other network machines from the guest. Ping the guest computer from the ho

qemu - access guest VM from host

Benjamin I am running an Ubunut on qemu. This is the lunch machine command I execute qemu-system-x86_64 \ -cdrom ubuntu-18.04.1.0-live-server-amd64.iso \ -drive file=ubuntu-18.04-server-amd64.img.qcow2,format=qcow2 \ -m 4G \ -smp 2 \ -net nic,addr=0x

Xenserver - Access guest VM directly from host

chatroom I have a nice PC and want to install xenserver on it, but this is also my main workstation. Wondering if it's possible to access the guest directly from the host - meaning, I can interact with the guest using a monitor, input device, etc. attached to

qemu - access guest VM from host

Benjamin I am running an Ubunut on qemu. This is the lunch machine command I execute qemu-system-x86_64 \ -cdrom ubuntu-18.04.1.0-live-server-amd64.iso \ -drive file=ubuntu-18.04-server-amd64.img.qcow2,format=qcow2 \ -m 4G \ -smp 2 \ -net nic,addr=0x

Xenserver - Access guest VM directly from host

chatroom I have a nice PC and want to install xenserver on it, but this is also my main workstation. Wondering if it's possible to access the guest directly from the host - meaning, I can interact with the guest using a monitor, input device, etc. attached to

Can't access internet from VirtualBox guest (Arch Linux)

Knowledge I am using VirtualBox 5.0.20. The host is a MacBook running OS X 10.11.5 (El Capitan). The guest OS is 64-bit Arch Linux. When I install Arch from the ISO, the guest internet connection is fine. However, once I boot into the installed system, I no lo

Can't access internet from VirtualBox guest (Arch Linux)

Knowledge I am using VirtualBox 5.0.20. The host is a MacBook running OS X 10.11.5 (El Capitan). The guest OS is 64-bit Arch Linux. When I install Arch from the ISO, the guest internet connection is fine. However, once booted into the installed system, I no lo

Can't access internet from VirtualBox guest (Arch Linux)

Knowledge I am using VirtualBox 5.0.20. The host is a MacBook running OS X 10.11.5 (El Capitan). The guest OS is 64-bit Arch Linux. When I install Arch from the ISO, the guest internet connection is fine. However, once I boot into the installed system, I no lo

Can't access internet from VirtualBox guest (Arch Linux)

Knowledge I am using VirtualBox 5.0.20. The host is a MacBook running OS X 10.11.5 (El Capitan). The guest OS is 64-bit Arch Linux. When I install Arch from the ISO, the guest internet connection is fine. However, once booted into the installed system, I no lo