Solved

how do i setup a webserver behind a netgear UTM9 firewall?

Posted on 2014-09-12
7
214 Views
Last Modified: 2014-09-29
I have a small network with a proprietary software program we use. The software company requires we setup a web server on our network for clients to access data. Our firewall is a Netgear UTM9. We have two public IP addresses. One extra for the web server.
How do I set up the web server in the UTM so people can access the web server? Unless I am not seeing it, I don't see a place for 1-1 NAT and if I set it up on the DMZ, the web server won't be able to talk to our main file server which is required for the software company.
Ideas?
0
Comment
Question by:TcAnthony
  • 4
  • 3
7 Comments
 
LVL 5

Expert Comment

by:Sean Jackson
ID: 40319407
Wouldn't you start by allowing tcp to port 80 and 443 to that IP, and from the 'inside' allowing that IP any out on port 80 and 443?
0
 

Author Comment

by:TcAnthony
ID: 40320168
I'm just not sure how to show two public ips. One for my regular network and one for my web server.
Thanks for the reply.
0
 

Author Comment

by:TcAnthony
ID: 40323392
Any help?
0
Use Case: Protecting a Hybrid Cloud Infrastructure

Microsoft Azure is rapidly becoming the norm in dynamic IT environments. This document describes the challenges that organizations face when protecting data in a hybrid cloud IT environment and presents a use case to demonstrate how Acronis Backup protects all data.

 
LVL 5

Expert Comment

by:Sean Jackson
ID: 40323479
You want your internal network public facing?  This is a bad idea.  

It's possible we're not speaking of the same thing at this point.
0
 

Author Comment

by:TcAnthony
ID: 40323505
Maybe. Thanks for your answer. Unfortunately, we have a proprietary program that the company requires an internal server to be used as a web server. We have built it as such (not our file server) to be used by this program and certain users as a web server. It does need to be seen from the outside.

I need to know how to configure the firewall to allow the webserver ip address to the inside without interfering with the traffic that is typically allowed (RDP, VPN, ETC.)
0
 
LVL 5

Accepted Solution

by:
Sean Jackson earned 500 total points
ID: 40323515
Oh, you allow TCP port 80, 443 to the IP, and then the same back out again.  TCP and ports will keep it separate from RDP, VPN, and other protocols, which also use their own ports.
0
 

Author Comment

by:TcAnthony
ID: 40350553
I have created a DMZ.
Thanks.
0

Featured Post

Ransomware: The New Cyber Threat & How to Stop It

This infographic explains ransomware, type of malware that blocks access to your files or your systems and holds them hostage until a ransom is paid. It also examines the different types of ransomware and explains what you can do to thwart this sinister online threat.  

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Each year, investment in cloud platforms grows more than 20% (https://www.immun.io/hubfs/Immunio_2016/Content/Marketing/Cloud-Security-Report-2016.pdf?submissionGuid=a8d80a00-6fee-4b85-81db-a4e28f681762) as an increasing number of companies begin to…
The next five years are sure to bring developments that are just astonishing, and we will continue to try to find the balance between connectivity and security. Here are five major technological developments from the last five years and some predict…
Sending a Secure fax is easy with eFax Corporate (http://www.enterprise.efax.com). First, just open a new email message. In the To field, type your recipient's fax number @efaxsend.com. You can even send a secure international fax — just include t…
Email security requires an ever evolving service that stays up to date with counter-evolving threats. The Email Laundry perform Research and Development to ensure their email security service evolves faster than cyber criminals. We apply our Threat…

831 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question