[Firewall] DMZ setup issue
ddewey at cyberthugs.com
Mon Feb 25 19:19:44 CET 2013
Quoting Lonnie Abelbeck (lists at lonnie.abelbeck.com):
> Hi Dave,
> Your error log looks like your DMZ client is trying to access the DMZ gateway address (10.9.10.1) with UPnP.
> How are your DMZ client's configured, usually I have to:
> To support DHCP and DNS from the local box if need be.
> Also, be sure to add your DMZ_NET in your NAT_INTERNAL_NET so the DMZ is NAT'ed via the external interface.
Lonnie, NAT'ing the DMZ was it - I figured that out about an hour
after I sent the email. Classic face palm moment.
@Jason, I would use a separately publicly-routable IP for the DMZ
but I'm only getting one (and additionaly static IPs are
outrageously expensive), that's why I'm configuring this way.
More information about the Firewall