Hi
We're migrating from a backend TMG2010 to a backend Sophos UTM and part of the work requires that we migrate server and application publishing rules e.g. we have a server publishing rule that publishes FTPS:990 protocol allowing external clients to access our internal FTPS server.
Our TMGs and UTMs are backend proxies and not edge devices so they work alongside edge firewall NAT rules. External clients connect to the public facing IP resolved from a public FQDN which NATs through the edge firewall to a DMZ listener IP on the backend TMG. Firewall rule also allows specific protocols/ports. Listener on TMG application publishing rule sends the traffic to the internal application server.
I need to replicate this on UTM but on first glance WAF doesn't do this because WAF is only allowing HTTP(S) protocol and HTTPS:990 isn't the same as FTPS:990. I'm assuming that we need to lok at UTM firewall rules however UTM is behind the edge firewall which would be handling the NAT.
Any ideas and/or gotchas?
thanks, Mark
This thread was automatically locked due to age.