Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Configuring Firewall with LAN with private IPs and DMZ with public IPs

Hello

I want to configure my Firewall to have a private LAN with private IP Addresses and a DMZ Zone with our public range (255.255.255.224).

In the public zone it must be possible to reach the devices directly by public IP address and to connect via VPN to have access to data in a secure way.

How it could be done?

I created a simple picture for illustration.

Thank you for replying.

Regards

Chris



This thread was automatically locked due to age.
Parents
  • Chris,

    What Alans said is correct. You are trying to use the same IP subnet among 2 different nic. You have to bridge wan and dmz together in order to get it working but to be honest bridging WAN and dmz is not really safe.

    What I advice you is to talk to your isp and split your public IPs in 2 subnet (one for WAN and one for dmz). You will lose some public IP but this is the best way IF You want to use public ip in dmz.

    Vpn, instead should terminate on WAN.

Reply
  • Chris,

    What Alans said is correct. You are trying to use the same IP subnet among 2 different nic. You have to bridge wan and dmz together in order to get it working but to be honest bridging WAN and dmz is not really safe.

    What I advice you is to talk to your isp and split your public IPs in 2 subnet (one for WAN and one for dmz). You will lose some public IP but this is the best way IF You want to use public ip in dmz.

    Vpn, instead should terminate on WAN.

Children
No Data