Hello All,
I have been working on setting up a DMZ for 2 weeks and am about to give up!!!My ISP will not help me out with the transfer subnet 255.255.255.252 for my block of eight public ips so I have to DNAT. Here is my setup:
Astaro 2.0.23
768/384 DSL
Block of IP's=216.158.41.48/29 or 255.255.255.248. This range includes 216.158.41.48 to 216.158.41.55.
Default Gateway=216.158.41.49
Three Nic Cards
Internal Nic=192.168.1.100
External Nic=216.158.41.53
DMZ Nic=192.168.2.100
The server in my DMZ is a public DNS and Webserver which uses ip 216.158.41.50.
Here are some rules I have in place just for my private network to access the internet (These rules work fine):
Masquerading
Internal Network --> External Nic
Packet Filtering Rules
Internal Network Any Any Allow
Questions I have for DMZ Setup???
1)What ip address do I put on my DNS/Web Server located in the DMZ??? I need it to be available to the public with ip 216.158.41.50.
2)What packet filtering rules do I have to setup for my DMZ?
3)What DNAT rules do I have to setup for my DMZ?
4)What NIC card do I setup Proxy Arp?
5)Do I need to do any IP Aliasing?
I have read over 100 threads related to this and have read the FAQ multiple times. I really need someone knowledgible to give me some guidance.
Thanks you so much in advance.
cbarone@dca.net
[ 05 May 2002: Message edited by: Gert Hansen ]
This thread was automatically locked due to age.