Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How do I put a computer in the DMZ?

I simply want to put one computer on the internal LAN network in the DMZ. I don't want to be able to access it from the private LAN. This seems simple, but I've been reading, and trying to create rules to do this, and I can't get it to work. I think I'm probably making it much more complicated in my head than it really is.

Port 1 is  LAN. Port 2 is WAN. Where do I get from there? Thanks



This thread was automatically locked due to age.
Parents
  • Zbrett,

    by default DMZ already exists, so you need to configure an additional port and assign it to DMZ zone. Create a LAN to DMZ zone in order to access servers in DMZ zone and a DMZ to WAN zone to allow access to internet.

    Think DMZ zone like an additional zone, so same rules are needed. Make sure then to move computers/Servers to DMZ and assign them the same network address.

    Connect the DMZ port (from XG) to Computers using another Switch or create VLANs layer 2. You can connect both LAN and DMZ devices on the same swtich but it is not a good deal (security reason).

  • So it is as complicated as I feared. Due to the placement of the computers in my house, it may not be practical (but not impossible) to put the computer on an additional physical switch, so I guess I will have to go the VLAN route (which is have yet to attempt). Thanks for pointing me in the right direction. I'll will no doubt be back with more questions if I can't find the answers elsewhere.  I don't have managed switches, is that an issue?

Reply
  • So it is as complicated as I feared. Due to the placement of the computers in my house, it may not be practical (but not impossible) to put the computer on an additional physical switch, so I guess I will have to go the VLAN route (which is have yet to attempt). Thanks for pointing me in the right direction. I'll will no doubt be back with more questions if I can't find the answers elsewhere.  I don't have managed switches, is that an issue?

Children