Hi!
I'm using ASL 1.824 as a firewall and proxy for a private network, and would like to make an FTP server available on a separate DMZ network segment. The ftp server has the address 213.254.164.201, and is set-up on the third NIC of the firewall. Masquerading and proxies are used on the private network segment to access the Internet, and clients on that segment can reach the DMZ ftp server through the static routes of the firewall.
It is not possible to reach the DMZ ftp server from the Internet however. I have made a packet filter rule to allow FTP packets (well, ALL actually) in both directions between ANY and the ftp server on the DMZ. Access to the ftp server from outside remains impossible however.
I expect I've missed the point somewhere, but I thought that the firewall would accept and forward packets for the addresses in the DMZ if they were in its routing table. Perhaps I must add another route?
Please help - this is an urgent task for me!
Thanks!
Justin.
xxxxxx
This thread was automatically locked due to age.