True DMZ configuration
Posted on 2003-11-21
Goal: Too set up a true dmz using a packet filtering boundary router and an actual firewall/VPN. This is not a service leg configuration.
Question: I am unsure about the config for the network configuration of the DMZ network. I have 4 public IP’s at my disposal. It is my understanding that in this configuration I will have a completely separate network as the DMZ. I know that I can have a private DMZ with mapped IPs for services or I can have a public DMZ. What I really need is diagrams showing the interface configurations of the boundary router and firewall. Or if someone could fill in the question marks below that might help. The boundary router is netopia r9100 and the firewall is netscreen 5gt.