|
You have to create an entry in local.arp for the
outside IP address of the webserver and the MAC of your outside
interface.
You then need to create a static route entry for
that IP to the IP of the firewall-1 interface on your DMZ leg.
You then need to define a static NAT translation
rule to change IP of webserver to the DMZ/outside IP depending on direction of
traffic.
You can do the same for inside leg if you want your
bastion accessible from your localnets.
|
Title: NAT and DMZ routing
- [FW1] NAT and DMZ routing Rob Michayluk
- RE: [FW1] NAT and DMZ routing Carl E. Mankinen
- RE: [FW1] NAT and DMZ routing Rob Michayluk
- Re: [FW1] NAT and DMZ routing Carl E. Mankinen
- RE: [FW1] NAT and DMZ routing Hal Dorsman
- RE: [FW1] NAT and DMZ routing Thomas . Poole
- RE: [FW1] NAT and DMZ routing Murphy, Paul
