Hi all, I have a web server sit in the DMZ and IP 10.10.10.1, and real IP 1.2.3.2 in external NIC on firewall. Using DNAT to transfer port 80 request to DMZ web server.
If I am doing so, do I need to do anything in packet filtering in order to protect the machine? Since I found I cannot do anything else already such as FTP, etc.
As for the above setting, am I setting the right configuration? Should I use real IP for web server in DMZ or currently I am setting the right config? Pros and Cons?
Many thanks.
felix [:S]
This thread was automatically locked due to age.