Solved

Watchguard firewall setup XTM25

Posted on 2013-01-24
2
711 Views
Last Modified: 2013-02-01
Taking a different approach here. I was recently assigned a bank of 6 static IP addresses in which I want to 1) set up an email server on which has squirrelmail, ispconfig, postfix, etc. 2) set up a static IP for each of my webservers. I need multiple services for each server, such as email server which has https, http, smtp, pop. SSL ports (465/995) for POP and SMTP, and for the webservers http, and SSH. On the static IP's I have 216.xxx.xxx.160 /29 and use .161 for the gateway, and .162 for the WAN interface, leaving 163-166. I can ping out using this setup, but cannot get in. I assumed I could just do a 1-to-1 NAT and not have any issues, but I cannot access anything when trying from an external network. Any ideals? What am I leaving out?
0
Comment
Question by:ITmanage
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 17

Accepted Solution

by:
TimotiSt earned 500 total points
ID: 38815264
You could use proxy-ARP on the WAN interface, so it'll reply for the public IPs.
Not sure how exactly to set that up on Watchguard, though...
See page 55:
http://www.watchguard.com/help/docs/v741WFSConfigurationGuide.pdf


Tamas
0
 

Author Comment

by:ITmanage
ID: 38815359
So far all I'm seeing is that I will have to change it to "drop-in" mode to use proxy-arp
0

Featured Post

Now Available: Firebox Cloud for AWS and FireboxV

Firebox Cloud brings the protection of WatchGuard’s leading Firebox UTM appliances to public cloud environments. It enables organizations to extend their security perimeter to protect business-critical assets in Amazon Web Services (AWS).

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Office 365 Login Audit Report 1 61
Wifi addin for wireshark? 5 47
Force a WIFI client onto a specific access point 7 68
Home firewall recommendations 11 91
Join Greg Farro and Ethan Banks from Packet Pushers (http://packetpushers.net/podcast/podcasts/pq-show-93-smart-network-monitoring-paessler-sponsored/) and Greg Ross from Paessler (https://www.paessler.com/prtg) for a discussion about smart network …
Arrow Electronics was searching for a KVM  (Keyboard/Video/Mouse) switch that could display on one single monitor the current status of all units being tested on the rack.
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question