Hello,
I use the Astaro FW for my private network. I have a WAN interface, a LAN interface and a DMZ interface. I want to allow traffic (e.g. HTTP) from the internal network to the internet, but traffic (e.g. HTTP) from the internal network to the DMZ should not be allowed. Up to now I implemented this by having a rule in the beginning which rejects all kind of traffic from the internal network to the DMZ. Only allowed traffic is infront of this blocking rule.
I think this is a little bit complicate, so my question is, if it is possible to make a clear definition for public networks (e.g. by having the possibility to exclude networks from the 0.0.0.0/0 range or a possibility to enter an ip range e.g. 1.0.0.0 - 9.255.255.255).
This thread was automatically locked due to age.