hi

first problem:
within proxy configuration, there is a configuration field "network
based access control -> allowed subnets".
this will be automatically filled with the subnets which are direct
connected to the efw and for which the proxy is enabled. in your case
all three zones.

the proxy automatically denies requests to those zones!
otherwise the proxy would allow access to those zones from everywhere,
that's a big security hole.

normally you do not really need the proxy on orange, so you may disable
it for orange, then blue and green can connect to it.

second problem:
portforwardings from red to intern zones work only if the request comes
from red. if you like to connect from the other internal zones, you can
connect the real intern orange adress instead of the portforwarded red
alias ip.

peter

-- 
:: e n d i a n
:: open source - open minds

:: peter warasin
:: http://www.endian.it   :: [EMAIL PROTECTED]

-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________
Efw-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/efw-user

Reply via email to