02-10-2009 07:41 AM - edited 03-04-2019 03:30 AM
Hi all, if I have a firewall on my central site, but want to host the DMZ on another site, would it be possible to get this across a wan link etc? would the only option be to bridge?
cheers
Carl
02-10-2009 08:27 AM
If you did it this way you would be best with a LES link to a DMZ switch on the other site. It would be bridged, but you would need your Gateway out to the internet or the untrusted Network on the Remote site also.
02-10-2009 08:36 AM
Are there any other options than this ?
02-10-2009 08:46 AM
Carl,
You could actually do this with the Gateway on the same site as the firewall. On the outside interface of the firewall you could have a switch and then bridge to another switch on the remote site. Total of 2 switches in the DMZ.
If it's not possible to bridge between sites then you would need routed links and you would just have to NAT to remote site.
I am presuming you have servers on remote site which you cannot move to your firewall DMZ?
02-10-2009 08:55 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide