This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Questions about SG 430 and Suedo-DMZ

Hi,
I'm setting up my first SG 430, and we have a web server that is hosted in a virtual environment with 3 physical nodes.  I'm planning on setting up one interface with the subnet of the DMZ and putting a switch on that interface with all the physical nodes' DMZ ports on the switch.  

The part that I'm struggling with is the firewall rules to allow external traffic to the specific ports, and then DMZ traffic to be very limited to the internal network.

I searched but I couldn't find an example similar to this.  Can anyone point me to suggestions for how this should be setup?

Thanks in advance for any help you can give.

--Kent


This thread was automatically locked due to age.
  • Hi, Kent, and welcome to the User BB!

    I'm not following your explanation.  Do you have something like this?

    Internet[UTM]DMZWebserver



    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA