4 dmz to wan & dmz to lan – Planet Technology MH-2001 User Manual
Page 253
MH-2001 Multi-Homing Security Gateway User’s Manual
7.4 DMZ To WAN & DMZ To LAN
This section describes steps to create policies for packets and services from DMZ networks to WAN networks.
Please follow the same procedures for DMZ networks to LAN networks.
Entering the DMZ To WAN window:
Click DMZ To WAN under Policy menu and the DMZ To WAN table appears displaying currently defined
DMZ To WAN policies.
The fields in the DMZ To WAN window are:
Source: source network addresses which are specified in the DMZ section of the Address
window.
Destination: destination networks, which is the WAN network address
Service: services supported by Servers of WAN networks.
Action: control actions, to permit or deny packets from the DMZ network to WAN networks
travelling through MH-2001.
Option: specify the monitoring functions on packets from the DMZ network to WAN networks
travelling through MH-2001..
Configure: modify settings or remove policies
Move: this sets the sequence of the policies, number 1 being the first policy to proceed.
Adding a DMZ To WAN and DMZ To LAN Policy:
Example:Set a Mail Server to allow the internal and external users to receive and send e-mail
under DMZ Transparent Mode.
STEP 1﹒Set a Mail Server in DMZ and set its network card’s IP Address as 61.11.11.12. The DNS setting is
external DNS Server.
STEP 2﹒Add the following setting in DMZ of Address function:
- 247 -