Hi all,

I'm in the process of replacing my current firewall with a GB1000, I have
configured this the best I can to be the same for the time being, I'll start
to change things later for now I just want to swap out without any
difficulties.

I swapped over the network cables to test the other night and no one could
get access to my intranet servers in the DMZ, I swapped back immediately and
checked the logs on the GB1000, it was reporting that the intranet servers
where 'spoofing'.

The setup I have for the intranet is a load balancer (LinuxVirtualServer)
and many 'real servers' WinNT behind, the load balancer accepts requests on
a 'virtual' IP and then does address translation to the 'real server' which
fulfil the request and then does address translation again before returning
this to the client, it would seem that the GB is seeing this being done and
rejecting the packets.

Is this do-able with GB?  Has anyone else done this kind of setup?

Any help much accepted

Peter Martin
IT Operations Manager
Initial Electronic Security
e. [EMAIL PROTECTED]


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
To subscribe to the digest version first unsubscribe, then
 e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to