Question : Firewall DMZ access question


Hi,

Scenario:

-Firewall CheckPoint
-A webserver that is sitting on the DMZ with the following IP address - 172.30.1.10

There firewall does an internal NAT from a public IP to the DMZ IP and the only port allowded is port 80. Access by name is also configured.  

Question:

Does access from the internal VLANs needs to be allowded so for example VLAN20 - Accounting could access the server on 172.30.1.10.  

All the VLANs should be able to access the webserver from the public IP (nated to the DMZ IP).

How do we need to configure this in order to be in compliance with DMZ/Best practices?

Thank you!

Answer : Firewall DMZ access question

The answer is in_array()!
Random Solutions  
 
programming4us programming4us