Post by SG51_user » 06 Apr 2011, 18:35


is there any where to forward the complete traffic which arrives on the WAN port on an ARP published IP to e.g. the DMZ port without changing any packet infos?
To this port a proxy is connected which will handle the traffic.

The used system is a SG55.

Re: Forward external IP to DMZ port

Post by Roger » 11 Apr 2011, 08:38


It depends. You will off course change the MAC address, but apart from that it should be fairly straight forward. Just an allow rule and the packet will be forwarded. You could off course do an Fwdfast for the incoming and outgoing traffic to and from that IP, but that would only make sense if the firewall doesn't see all packets.

Re: Forward external IP to DMZ port

Post by danilovav » 07 May 2011, 07:35

If getting of the same source port numbers is important for you, make transparent mode between WAN and DMZ and use public IP there
If no - SAT+NAT wan/all-nets core/wan_add_ip all_services, SAT: new destination = your_dmz_host
BR, Alexandr Danilov

