cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
283
Views
0
Helpful
2
Replies

DMZ to DMZ

anthony.teo
Level 1
Level 1

Hi,

I have problem letting 2 server sitting in two different firewall DMZ zone to comm/replicate.

No problem when com/replicate from inside LAN.

Please see attached and advise.

2 Replies 2

haithamnofal
Level 3
Level 3

Hi Anthony,

I looked into the your drawing and I just have couple of questions for you:

1- I saw a WAN cloud between the 2 DMZ zones, are they connected to different PIXs and these PIXs resides in different sites? If they're in 2 different sites, how is the exact connection look like?

2- If they're on the same FW, what are the security levels of each DMZ?

3- How is the address translation look like? Are you routing the traffic or are you translating it between these subnets?

4- Do you have ACL configured on the ports you need them to communicate on?

5- Which server initiate the connection?

6- If they're in different sites, did you verify the routing is working well (e.g. can you ping from one server to another, make sure you have ICMP allowed before doing this test)?

Please clarify to us your setup in more detail so we can help you more on this.

Regards,

Haitham

anthony.teo
Level 1
Level 1

thanks for your response.

I found the problems.

it resolveed