You should use a different range for your DMZ. In fact, use a different network range on every segment of your FW-1.
eth0: x.x.x.34
eth1: y.y.y.35
 
Elmar van Mourik
System & Network Management
Zuiveringsschap HEW
 
 
-----Original Message-----
From: Gunjan Mathur at 9netave [mailto:[EMAIL PROTECTED]]
Sent: Thursday, July 20, 2000 5:43 PM
To: [EMAIL PROTECTED]
Subject: [FW1] Fw-1, Contnt checking and Virus !!

Hi,
 
I installed FW-1 and now looking for contecnt checking, virus protection and URL filtering. I installed Trend's Applet trap for this then it says that to integrate with Firewall-1 we need HTTP proxy configured with FW-1. When FW-1 can do the IP forwarding according to policy then why we need any proxy software.
 
Is there any other way to do so?
 
I'm trying to implemet the External/DMZ/Internal structure and facing some problem in this.
 
 
x.x.x.34(eth0)
Inet ----> Firewall Gateway
                    |    |x.x.x.35(eth1)
                    |    |------> DMZ  
                    |
                    |192.168.x.x(eth2)
                    |-----------> LAN
 
I have a confusion in this: When my eth0 and eth1 are using same IP range then how traffice route in between these two routes.
OR I need Real IP of different range for my DMZ area.
 
 
TIA
 
Gm.


-----

Reply via email to