I am having trouble allowing DNS and smtp to pass on my DMZ.
ISA = tri-homed intergrated
first nic external to isp 220.127.116.11
second nic perimeter network 18.104.22.168
third nic internal 192.168.10.1
My exchange and DNS are running on the same box.
I am not sure if the perimeter server should have a gateway designated
I am not sure if the second nic should be a isp assigned IP
I am not sure if the second nic should have a gateway designated.
I am not sure if I should include the second nic in the LAT
I have created an allow rule for all protocals
I have created an allow rule for all IP packets
The proxy service is working fine for my internal clients all 192.168.10.x clients can hit any web site they want.
The problem is the perimeter network setup.