Hi. I have a network 172.20.68.0 with netmask 255.255.252.0. My DMZ network is the 172.20.70.224/255.255.255.240 (It be in the same network that the public address). The ASL machine has the ip 172.20.70.1 in eth0, and 172.20.70.238 in eth1. I activate the proxy arp in eth0, and machines from network 172.20.68/22 see the DMZ machines with this feature, but the machines inside the DMZ can't see the machines in the other network. I has a Checkpoint Firewall 1 with this network configuration, and all runs ok. I think that i must use NAT to make that DMZ machines go into public LAN , but i don't know how. Any one can help me?. Regards
172.20.70.224/255.255.255.240-----DMZ----eth1---
172.20.68.0/255.255.252.0-----eth0(Proxy arp)---ASL MACHINE
This thread was automatically locked due to age.