DMZ/NAT



  • hello everyone,

    I want to thank all of you last time it was very helpful your answers. Now I have a question about DMZ. I have 2 WAN and 1 LAN and want to setup DMZ on seperate NIC. If lan user will access web server in DMZ with private address do I need NAT Reflection? Or only one case if local user will access web server with public address? As I understand pfsense needs NAT reflection if only we need access from local network to pfsens's public IP which is forwarded on privat IP of web server.

    Thanks :)



  • If lan user will access web server in DMZ with private address do I need NAT Reflection? Or only one case
    if local user will access web server with public address?

    Likes this, you will need NAT reflection or also called (Hair Pin NAT) only for the contact from the
    local network (LAN) to the DMZ by using the url or public IP address.



  • tanks for your answer i will try and let you know :)