?
Solved

DMZ SMTP Gateway and rules

Posted on 2004-08-25
2
Medium Priority
?
309 Views
Last Modified: 2010-04-08
So i have my SMTP gateway server on the DMZ, with a rule that allows 25 traffic in to the DMZ.  I then have the SMTP server pointing to a smart host on the inside network which is my exchange server.  I only have one NIC.  I am going to assign that NIC a public DMZ address and set the gateway to the firewall.  I will then setup another rule allowing the traffic in from the firewall DMZ to the lan.  Will the firewall be able to route the smtp traffice back into the LAN?  it is a sonicwall 3060.  Or do i need to set the server with 2 NICS?  How does that work?  Two NICS does not make sense to me.  I am assuing the firewall can route the traffic back into the LAN.
thanks

trying to learn how this works with a server in the DMZ and One NIC
0
Comment
Question by:YankeeFan03
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 11

Accepted Solution

by:
PennGwyn earned 1000 total points
ID: 11897620
Yes, that's all correct.  The idea of a multi-legged firewall is to route traffic between the DMZ and the internal network back through the firewall for filtering.  A second NIC would offer a path that bypasses this security.

0
 

Author Comment

by:YankeeFan03
ID: 11897697
great thankyou
0

Featured Post

Enroll in August's Course of the Month

August's CompTIA IT Fundamentals course includes 19 hours of basic computer principle modules and prepares you for the certification exam. It's free for Premium Members, Team Accounts, and Qualified Experts!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Do you have a windows based Checkpoint SmartCenter for centralized Checkpoint management?  Have you ever backed up the firewall policy residing on the SmartCenter?  If you have then you know the hassles of connecting to the server, doing an upgrade_…
The DROP (Spamhaus Don't Route Or Peer List) is a small list of IP address ranges that have been stolen or hijacked from their rightful owners. The DROP list is not a DNS based list.  It is designed to be downloaded as a file, with primary intention…
Michael from AdRem Software outlines event notifications and Automatic Corrective Actions in network monitoring. Automatic Corrective Actions are scripts, which can automatically run upon discovery of a certain undesirable condition in your network.…
This tutorial will teach you the special effect of super speed similar to the fictional character Wally West aka "The Flash" After Shake : http://www.videocopilot.net/presets/after_shake/ All lightning effects with instructions : http://www.mediaf…
Suggested Courses
Course of the Month15 days, 14 hours left to enroll

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question