This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

HOw to setup Astaro Question

I have a public facing webserver in a datacenter that i would like to put Astaro in front of.  I do NOT want to use private ips on the webserver as it is already configured to use the public ips.  I have a /29.  I'm thinking i can bridge the Astaro and work this...some pointers or tips to accomplish this would be highly appreciated.


This thread was automatically locked due to age.
  • that goes both ways.

    Owner:  Emmanuel Technology Consulting

    http://etc-md.com

    Former Sophos SG(Astaro) advocate/researcher/Silver Partner

    PfSense w/Suricata, ntopng, 

    Other addons to follow

  • you can indeed do a totally public bridge.

    just give the ASG a public IP in that range on the bridge, bridge 2 ports together, open the packet filter, and voila. No need to do NAT.


    would this allow me to use WAF and mail security and possible ips as well?

    Owner:  Emmanuel Technology Consulting

    http://etc-md.com

    Former Sophos SG(Astaro) advocate/researcher/Silver Partner

    PfSense w/Suricata, ntopng, 

    Other addons to follow

  • I would think so, William.  Only IPS depends on traffic going from one physical interface to another, and it does get applied to traffic transiting bridged interfaces.  WAF, Mail Security and Web Security all can be done using a single physical interface, so they shouldn't care about bridges.

    MediaSoft has its website hosted by Bluehost, but I set up WAF to allow access via one of our local public IPs: http://www.mediasoftusa.com.  I've also configured the SMTP Proxy to use mail servers reached via the External interface.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA