DMZ Configuration

Hi All  

 I made a  DMZ Lan interface and it is already working, my question is

1. is it normal that i can ping the local network from dmz network and vise versa? 

2. is it possible to assign different public i.p on the dmz?

 

Thank and Best regard

  • To be honest i don't like the name "DMZ" or the logic to use it, since i have i firewall.

    DMZ it is another Internal Network behind your Firewall and the traffic betwen the other LAN or internet is regulated through Firewall Rules

    Second Question: Yes

    In masquerading you can use " Additional Ip Address defined in Interfaces

  • Hi Jessie Earl,

    1. See #2 in Rulz, specifically 2.3.

    Cheers - Bob

  • How did you get you DMZ to work? I can get an address from the DHCP server configured on the DMZ,  but I cannot get out to the internet.  My rules to block access to the internal network is working, but no internet.

  • In reply to PMJ:

    Hi and welcome to the UTM Community!

    What did you do and see that made you conclude that you couldn't get out to the Internet?

    Cheers - Bob

  • In reply to BAlfson:

    I did not have the DMZ Network in the allow DNS Services.