I need to put a Firebox in front of our network. The network is composed of one subnet made up of 511 'public' IP's on the 'trusted' side of the firewall, and on the other side, a router on the same subnet which connect's us to the wider University network.
The firewall I am replacing is configured in 'drop in' mode - all the interfaces are set to one IP, and it performs Proxy-ARP.
How should I configure the Astaro? I am not sure I should set both interfaces to the same IP. Instead I have set one side (internal) to ***.1.40.3, the external to ***.1.40.7 (I am using the x's for the purpose of masking my IP's in this post). The external interface has the IP of the interface on the router we connect to set as the default gateway. I have set rules to allow HTTP etc out, and configured DNS. At the moment I can't connect to any websites - haven't tried any other protocols yet. The problem isn't DNS, have tried by using actual IP's of websites to verify this.
What do I need to do to configure this correctly? I have set Astaro up in NATTed networks before but never on non-NAT.
Regards,
Mark
This thread was automatically locked due to age.