This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Access internet from behind two xg125 firewalls through web proxy.

Hi all

I am planning to connect my PC to a LAN which is behind an XG125 (fw1). fw1 is connected to an xg125 (fw) which is connected to internet. Help me configure the firewalls so that the PC can access internet through fw1-web proxy.

Note: PC is able to access internet in direct mode. ie if I use rule LAN to WAn any any

Regards

Koshy



This thread was automatically locked due to age.
Parents
  • I am tagging in here because I am curious on the outcome of this, but I am also wondering.

     

    Do you have LAN to WAN Any set on both XG's? 

     

    Which XG is the Garteway for the computer you are using? 

     

    Or can you provide more details on the setup?

  • Well, fw1 that is connected to the pc is the gateway. PC's browser is configured to use fw1:3128 as the proxy server.

    As I mentioned in the first post, everything is fine when I make fw1 as the PC's gateway. FW is configured to access internet throw fw2.

    I have not gone through the logs yet.

  • I see, so basically you have-

     

     

    As I see it, the computer itself is protected, however you would be allowing all traffic to go from fw2 to fw1 since the proxy does not take place until fw1.  Which may use unnecessary resources. I feel as though you should have the proxy at FW2 to prevent any traffic that may not want from getting through the first perimeter firewall.  I know you could do this in a variety of ways but I am not sure what would be the best case scenario.  

     

  • Thank you badrobot

    The diagram you have illustrated is very well my setup. Though I have many other devices connected to various zones and networks.

     

    So, you suggest to use the proxy on fw2 that is directly connected to internet?

    Here in my setup, I am trying to use the fw1 (The one connected to my computer) as proxy

    Let me just go through the logs once I go back to the setup

Reply
  • Thank you badrobot

    The diagram you have illustrated is very well my setup. Though I have many other devices connected to various zones and networks.

     

    So, you suggest to use the proxy on fw2 that is directly connected to internet?

    Here in my setup, I am trying to use the fw1 (The one connected to my computer) as proxy

    Let me just go through the logs once I go back to the setup

Children