2008/10/8 Paul Mansfield <[EMAIL PROTECTED]>: > > icmp echo request on DMZ interface,
yes (in a firewall rule) > as well as a route to LAN on DMZ which should be handled by the systems' default routes, assuming that's pfSense. > machines, and advanced NAT so that LAN isn't natted to DMZ > No, only traffic leaving WAN interfaces gets NATed, not between internal interfaces. --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]