Real DMZ with NAT ZyWALL USG

PeterUK
PeterUK Posts: 2,651  Guru Member
First Anniversary 10 Comments Friend Collector First Answer
edited April 2021 in Security

Given the new site I wanted to share my success setup

Comments

  • Zyxel_Charlie
    Zyxel_Charlie Posts: 1,034  Zyxel Employee
    First Anniversary Friend Collector First Answer First Comment
    Hello PeterUK,
    G'day
    It's a nice example.
    Thanks for your sharing.
    BR,
    Charlie
  • PeterUK
    PeterUK Posts: 2,651  Guru Member
    First Anniversary 10 Comments Friend Collector First Answer
    Due to port 80 being blocked I upload here of the setup.

  • PeterUK
    PeterUK Posts: 2,651  Guru Member
    First Anniversary 10 Comments Friend Collector First Answer

    Got the VLANs wrong have corrected it I hope


  • PeterUK
    PeterUK Posts: 2,651  Guru Member
    First Anniversary 10 Comments Friend Collector First Answer

    So due to some changes Zyxel have made in ZLD4.73 & ZLD5.36 patch 2 I have updated a fix due to them changes.

    So now you can VPN to Zywall by port 4500 but it means you can't have a PC on real DMZ use that port but then it should use protocol 50 but what I don't know as I don't have two WAN IP's for testing if protocol 50 to Zywall and PC will work and that you need to redirect that too.

Security Highlight