Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

FIREWALL RULE WITHOUT NAT

Sir,

I have configured PortF1 for WAN Acees, which works perfectly fine with NATTING with our LAN and DMZ network.  However I want to ctlreaye SSH acces from a WAN server to Two Serverd placed in DMZ.

  1. If my WAN client is 155.48.96.59 and I want to SSH to our internal DMZ servers with IP Addresses 157.61.3.246 and 157.61.3.246. Then what should be the rule without NAT


This thread was automatically locked due to age.
  • Hi,

    source would WAN, the network would be the IP address of the client destination would be LAN, network group (using your two IP addresses, services would be SSH,  IPS WAN to LAN and application allow all. web allow all and use the DPI.

    There is a problem though with only having two IP addresses in that the LAN interface needs an IP address in the same range as the servers even if you use aliases.

    Ian