I've just completed installing the Astaro gateway on a box with 3 NICs. Ultimately I want to have a DMZ setup for 2 servers on the DMZ interface along with my Internal network.
For the boxes on the internal network, what do I need to do to give them access to the Internet? In the packet filtering I currently have Service, Destination, and Source set to ANY (which I'm sure is not good). The 2 machines on the internal network (one with static IP and one getting an IP from the Astaro box) should be able to surf (at a minimum) but perhaps also be able to ssh into the servers in the DMZ.
Given these 2 items, what should the packet filter rules look like? Also, do I need to setup anything in the Masquerading portion of the Astaro web interface?
I plan on getting the internal network machines setup right, and then once my understanding is better, work on gettng the web/mail servers in the DMZ setup.
Thanks.
This thread was automatically locked due to age.