• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Create new interface DMZ but problem to access

Scheduled Pinned Locked Moved Firewalling
17 Posts 4 Posters 1.2k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • H
    herken @Rico
    last edited by Dec 21, 2019, 2:06 PM

    @Rico ok i changed the rules and now it's seems ok to the log, the traffic can pass but i cannot surf actually and the ping to 10.2.0.1 not pass but not blocked by the firewall as you can see
    75a083ea-23d5-4347-a3d3-a6cc75e226d3-image.png

    Have i to create a route or something else?

    The actual rule :
    2255252f-0399-4134-9641-482202812f4e-image.png

    Thanks !

    1 Reply Last reply Reply Quote 0
    • R
      Rico LAYER 8 Rebel Alliance
      last edited by Dec 21, 2019, 2:07 PM

      Show the DMZ IP configuration (screenshots).

      -Rico

      H 1 Reply Last reply Dec 21, 2019, 2:08 PM Reply Quote 0
      • H
        herken @Rico
        last edited by Dec 21, 2019, 2:08 PM

        @Rico Sure

        40af0bd6-3b9c-4d11-855b-7521287d3cb0-image.png

        14c1fd49-942c-4a66-9432-9d57d85dbbc0-image.png

        1 Reply Last reply Reply Quote 0
        • R
          Rico LAYER 8 Rebel Alliance
          last edited by Dec 21, 2019, 2:09 PM

          Wrong netmask, change /32 to /24

          -Rico

          H 1 Reply Last reply Dec 21, 2019, 2:12 PM Reply Quote 0
          • H
            herken @Rico
            last edited by Dec 21, 2019, 2:12 PM

            @Rico Ho nice it's ok now ! Cause the mask 255.255.255.255 the computer can only see itself right?

            Do you know why i can't create a DHcp server on the DMZ interface ? I already configure it on the LAN interface but i imagine we can create for each interface, right?

            Thanks so much Rico!

            1 Reply Last reply Reply Quote 0
            • R
              Rico LAYER 8 Rebel Alliance
              last edited by Dec 21, 2019, 2:14 PM

              With the correct netmask you should be able to configure the DHCP server now.

              -Rico

              H 1 Reply Last reply Dec 21, 2019, 2:15 PM Reply Quote 0
              • H
                herken @Rico
                last edited by Dec 21, 2019, 2:15 PM

                @Rico You right i just checked now and the DMZ interface appear now, so perfect.

                Thanks !

                1 Reply Last reply Reply Quote 0
                • G
                  Gertjan
                  last edited by Dec 21, 2019, 3:05 PM

                  dd49f6fa-05a2-4832-9000-b7e63152b41c-image.png

                  As said above, remove the WAN net.

                  Also : TCP only ??
                  That means that there will be no DNS (UDP mostly !) requests allowed .....
                  Make that an "any" or at least TCP/UDP/ICMP.

                  No "help me" PM's please. Use the forum, the community will thank you.
                  Edit : and where are the logs ??

                  H 1 Reply Last reply Dec 21, 2019, 3:56 PM Reply Quote 0
                  • R
                    Rico LAYER 8 Rebel Alliance
                    last edited by Dec 21, 2019, 3:22 PM

                    Glad you have it working now. :-)

                    -Rico

                    1 Reply Last reply Reply Quote 0
                    • H
                      herken @Gertjan
                      last edited by Dec 21, 2019, 3:56 PM

                      @Gertjan All works now :) !
                      Thanks men !

                      1 Reply Last reply Reply Quote 0
                      17 out of 17
                      • First post
                        17/17
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                        This community forum collects and processes your personal information.
                        consent.not_received