Allowing access to Internet
-
Hi
I am looking for you help in clarifying this, I have Wan, LAN and DMZ, I want to allow DMZ to have Internet access but where should I put the rules?
More details, I have some severs in the DMZ that need Internet access, I tried putting the rule in the DMZ allowing all but it didn't worked, I tries creating a rule in the WAN allowing all from DMZ but it didn't worked, any idea will be appreciated.
-
where should I put the rules?
Firewall rules are always placed on the interface that receives the traffic you want to control. So, if you want to control servers on your DMZ interface, you need to put the rule in the DMZ tab.
I tried putting the rule in the DMZ allowing all but it didn't worked
You must have made a mistake. The point of a DMZ is to have a separate area for servers so that if they get cracked, the intruders can't just hop onto your LAN. Here is a basic DMZ rule that allows full access out to the Internet but not to your LAN:
-
Hi, thank you for your replay, I have a simple question, how does DMZ that has to use WAN to go out to Internet?
-
-
how does DMZ that has to use WAN to go out to Internet?
I'm not sure I understand your question. LAN and DMZ are internal networks; WAN is the public Internet. The rule I showed allows all DMZ hosts to go to the Internet but does not allow LAN access.
-
did you setup NAT for your DMZ ?
-
did you setup NAT for your DMZ ?
Don't confuse the issue. He's just trying to get out from DMZ at this point, not in from WAN.