The rules you have set should be sufficient.
The default gateway for the mail server should point to the firewall's
DMZ nic, not the internal nic.
e.g. If you have 192.168.1.x as the internal network (with 192.168.1.1 as
the internal gateway) and 192.168.2.x as the DMZ network (with 192.168.2.1
as the DMZ gateway), your mail server should be pointing to 192.168.2.1
as its gateway.
More troubleshooting questions:
Have you checked whether your NAT works?
Are there any other machines in the DMZ that is able to send/receive
traffic?
-----Original Message-----
From: Norman Zhang [mailto:[EMAIL PROTECTED]]
Sent: Friday, July 07, 2000 8:26 AM
To: [EMAIL PROTECTED]
Subject: [FW1] send mail in dmz
Hi,
Can someone please tell me what rule that I have to set to enable my mail
server (Exchange Server) to send/receive mail to/from the Internet? My mail
server is in the DMZ, with a valid ip. I have set a rule that allow from any
to the mail server through smtp, and vice versa. My default gateway for the
mail server is pointed to the internal firewall nic that is attached to the
DMZ.
Regards,
Norman
============================================================================
====
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
============================================================================
====
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================