Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

DMZ issue

Status
Not open for further replies.

angelo990

Technical User
Mar 6, 2002
55
US
Last week, succesfully created web server object to be placed on third int of FW(DMZ).
Created sec rules to allow in/out access to it
Did a static automatic translation, ARP, static route and it worked: able to go to the net from that machine on DMZ and ping everywhere, also was able to access that test machine using its NATed IP address from an external machine.
B4 going home, I disabled the rules.
Then I enabled them, and I can't access that machine from the net. does not respond to any pings.
I can ping from it to anywhere and even browse the net.
But it's like nonexistent to the Net. I cannot ping to it from an external machine.
It seems like something with the FW since in the logs it shows that the pinging it's being accepted. No drops!
Also, a tcpdumpm shows that it's only(of course) "icmp: echo request".

So, very odd since everything is in place.

I dont know where to look into anymore.

Thanks
 
I had enabled TCP/Ip filtering to accept an specific port but that was taken off.

 
resolved:
An advise: make sure u always check your objects NAT tab with the voyager static routes. A simple setting can create a mess.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top