Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 
Community Member

Route traffic out to Internet on same subnet

I’m just brainstorming a lab network setup and also studying for an exam and I simply need help to understand something. VERY basic network, no VLANs so I think you experts can answer it easily.

Very basic question: Will the be able to communicate to the Internet?

ip source-redirect and default GW same subnet.png

Correct me if I’m wrong, but aren’t there any security issues I have to consider (ICMP redirect?)

Yes, I know several alternative solutions like static routes on client, changing the topology but the above setup is what I’m wondering about.

Is there any additional things I need to configure on the firewall, router, switch or computer to get the above setup to work if we consider all network devices are Cisco? What commands? Will it probably work in some scenarios when using more basic switches without security features?


Re: Route traffic out to Internet on same subnet

Hi Jonas,

The answer is no since the is a private IP address. You would need NAT (try to do a quick Google search) for this to work.

Sent from Cisco Technical Support iPhone App

Route traffic out to Internet on same subnet

You would need to configure nat on the firewall, but other than that everything else looks fine...

The commands will depend on what type of firewall you have.



HTH, John *** Please rate all useful posts ***
Community Member

Re: Route traffic out to Internet on same subnet

Ah, yes, of course I should have mentioned that NAT is needed in the FW to the Internet.

But there's no need for anything to be configured on the LAN side (switch?) to allow the traffic going from the client to the router to exit on the same interface LAN again to reach the FW?

Hall of Fame Super Gold

Route traffic out to Internet on same subnet


You have not provided details about what kind of equipment, what models etc, you are dealing with. And there could be exceptions. But in general there is no problem and no special configuration required for a local host to send traffic to its default gateway ( in this case) and for the gateway to forward the packet to another device ( in this case) out the same interface.



CreatePlease to create content