OK I feel i'm on the right track here. So i've set up the following DMZ Settings:
Default - Alternate
172.16.0.0/20 - Direct
172.16.0.0/20 is my LAN.
Now from ouside i get an error right away when i try to connect at the bottom of the login screen that says:
ERROR An error has occured while connecting to the requested resource.
Do i have to setup any address translations?
Here is some more detail:
Internet -> Firewall -> Internal Router -> Web interface (172.16.0.10)
|
|-> Citrix Servers 10.11.34.2, 10.11.34.3, 10.11.34.4
I have port 443 forwarded thru to 172.16.0.10 on the lan for my Web Interface.
Main Topics
Browse All Topics





by: mgcITPosted on 2006-03-30 at 08:44:36ID: 16334137
Open the Access Suite Console (the Web Interface admin utility)
for your site click Manage secure client access > Edit DMZ Settings
Your default connection is probably set as "Direct"
The best way to set this up is to set the default to "Alternate" and then add additional rules for your internal LAN such as:
Client IP Address: 192.168.1.0 (or whatever your internal subnet is)
Mask: 255.255.255.0
Access Method: Direct
This way anyone coming from the outside will use the alternate addressing you have set up. However, if they go to the web interface using the internal address, it will just use the normal Direct access.