Thanks! I upgraded the firmware, NAT'd the DMZ and it works like a champ.

-Curtis


-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On
Behalf Of Jesper Bach
Sent: Wednesday, May 22, 2002 2:00 PM
To: [EMAIL PROTECTED]
Subject: RE: [SonicWALL]- Can I do this?


I'm not sure exactly what you mean, so here goes a working setup :

Configuring LAN to 192.168.1.0/24 and the DMZ to 10.0.1.1/24 and routing
between LAN/DMZ and DMZ/LAN.
Creating rules for services from LAN->DMZ and reverse also worked fine.

This is with firmware v.6.3.1.0. Does not work with firmware earlier
than 6.3.0.0.

/jesper


-----Original Message-----
From: Dude, Curtis [mailto:[EMAIL PROTECTED]]
Sent: 22. maj 2002 18:03
To: [EMAIL PROTECTED]
Subject: RE: [SonicWALL]- Can I do this?


I went to enter the range under ADVANCED\DMZ ADDRESSES and it would not
take
them. That's as far as I went.

-Curtis



-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On
Behalf Of Todd Holt
Sent: Wednesday, May 22, 2002 12:00 PM
To: [EMAIL PROTECTED]
Subject: RE: [SonicWALL]- Can I do this?


Does the private range work within the DMZ, but not across to the LAN
port?

Todd

-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On
Behalf Of Dude, Curtis
Sent: Wednesday, May 22, 2002 10:44 AM
To: [EMAIL PROTECTED]
Subject: RE: [SonicWALL]- Can I do this?


It seems the Sonicwall recognizes the private ranges and rejects it. Oh
well. I have to use another device then.

-Curtis



-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On
Behalf Of Todd Holt
Sent: Wednesday, May 22, 2002 11:41 AM
To: [EMAIL PROTECTED]
Subject: RE: [SonicWALL]- Can I do this?


Hmm.  I have never thought of trying this with machines that don't need
access to the WAN.  I'm not sure what the SW would do when it tries to
route
traffic from a non-routable subnet (LAN) to a non-routable subnet (DMZ).
Give it a try and let us know. :)

Todd

-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On
Behalf Of Dude, Curtis
Sent: Wednesday, May 22, 2002 10:23 AM
To: [EMAIL PROTECTED]
Subject: RE: [SonicWALL]- Can I do this?


They need Public IPs if they are to be Internet accessible for sure, but
since they are not, can I cheat the system and essentially use the DMZ
as a
second firewall for the LAN?

-Curtis


-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On
Behalf Of Todd Holt
Sent: Wednesday, May 22, 2002 11:18 AM
To: [EMAIL PROTECTED]
Subject: RE: [SonicWALL]- Can I do this?


Not exactly.  The machines in the DMZ MUST have public internet
addresses.
Effectively, the DMZ machines are on the WAN connection, except that
they
are protected from certain attacks (Syn Flood, PoD, etc).  You can also
restrict the port traffic to/from a DMZ machine.

Todd

-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On
Behalf Of Dude, Curtis
Sent: Wednesday, May 22, 2002 9:58 AM
To: 'sonicwall@peake. com'
Subject: [SonicWALL]- Can I do this?


I currently don't use the DMZ on my new Pro 300. Can I put a private IP
subnet through the DMZ to seperate that subnet from my other subnet that
I
use? There would be no Internet servers on the DMZ in this case, I just
want
to protect one subnet I have from another subnet that I have.

This would replace a soho/10 I have on them right now.

Thanks.

-Curtis

---
[This E-mail scanned for viruses by Declude/F-Prot AV]

========================================================================
====
=======================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the
email
put the following: unsubscribe sonicwall your_name
The archive of this list is at
http://www.mail-archive.com/sonicwall%40peake.com/


---
[This E-mail scanned for viruses by Declude Virus]


---
[This E-mail scanned for viruses by Declude Virus]

---
[This E-mail scanned for viruses by Declude/F-Prot AV]

========================================================================
====
=======================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the
email
put the following: unsubscribe sonicwall your_name
The archive of this list is at
http://www.mail-archive.com/sonicwall%40peake.com/




---
[This E-mail scanned for viruses by Declude/F-Prot AV]

========================================================================
====
=======================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the
email
put the following: unsubscribe sonicwall your_name
The archive of this list is at
http://www.mail-archive.com/sonicwall%40peake.com/


---
[This E-mail scanned for viruses by Declude Virus]


---
[This E-mail scanned for viruses by Declude Virus]

---
[This E-mail scanned for viruses by Declude/F-Prot AV]

========================================================================
====
=======================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the
email
put the following: unsubscribe sonicwall your_name
The archive of this list is at
http://www.mail-archive.com/sonicwall%40peake.com/




---
[This E-mail scanned for viruses by Declude/F-Prot AV]

========================================================================
====
=======================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the
email
put the following: unsubscribe sonicwall your_name
The archive of this list is at
http://www.mail-archive.com/sonicwall%40peake.com/


---
[This E-mail scanned for viruses by Declude Virus]


---
[This E-mail scanned for viruses by Declude Virus]

---
[This E-mail scanned for viruses by Declude/F-Prot AV]

========================================================================
====
=======================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the
email
put the following: unsubscribe sonicwall your_name
The archive of this list is at
http://www.mail-archive.com/sonicwall%40peake.com/




---
[This E-mail scanned for viruses by Declude/F-Prot AV]

========================================================================
===========================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the
email put the following: unsubscribe sonicwall your_name
The archive of this list is at
http://www.mail-archive.com/sonicwall%40peake.com/


---
[This E-mail scanned for viruses by Declude/F-Prot AV]

=================================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the email
put the following: unsubscribe sonicwall your_name
The archive of this list is at
http://www.mail-archive.com/sonicwall%40peake.com/




---
[This E-mail scanned for viruses by Declude/F-Prot AV]

===================================================================================================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the email put the 
following: unsubscribe sonicwall your_name
The archive of this list is at http://www.mail-archive.com/sonicwall%40peake.com/


Reply via email to