thanks a lot for your replay, maybe your answer didnt hit exactly what is on my mind, but you gave very uesful info. let me explain it in another way.. see below how is my user connecting 1. Remote User (internet) arrive to the ISG2000 2. ISG2000 have 2 3 zone (Untrust, Trust, IVE) Untrust is PUBLIC IP, Trust is 172.16.1.1, IVE External Interface 10.1.1.1 3. IVE Internal IP is 172.16.1.100 connecting to the same subnet Trust. 4. all the users on the 172.16.1.X subnet gateway and static route is set to the ISG Problems: 1. i need to define a static route on PCs or routers for anyone who want to reach the IP_Pool of the IVE to go to 172.16.1.100, and its somehow not easy casue there is lot of devices there, i cant change their default behavior to go to the IVE, and i cant install the IVE inline between the ISG and the Trust subnet. 2. the Trust subnet at the end connects to another L3 Switch which contains many other networks, i need to access them also, so i need to teach the users who connect via the IVE, if you wanna reach network 192.168.0.0/16 for example, go to the 172.16.1.10 gateway. is that possible, i appretiaite your time and efforts, thanks in advance.
... View more