EFW Support

Support => General Support => Topic started by: Matteo on Monday 07 July 2014, 07:51:12 pm



Title: Green to orange traffic
Post by: Matteo on Monday 07 July 2014, 07:51:12 pm
Hi,

I have Endinan 3.0 version.
The green zone has ip 172.16.0.0/24 and orange ip has 192.168.0.0/16.

I can't navigate from green to orange. If i use SNAT and add a route from green to orange i can navigate in orange but the only ip visible in the log connection in orange's server (http)  is that Endian Firewall. It's possiblible disable masquerde protocol for orange ?
It's correct to use snat between green and orange ?
I would like have a trasparent connection from green to orange it's possible ?

Thanks


Title: Re: Green to orange traffic
Post by: dualz on Wednesday 09 July 2014, 02:03:56 pm
yes you can access orange to green and so forth goto

FIREWALL then Inter-Zone Traffic(if not enabled then enable it)
then add a new rule
for source choose (Zone/Interface)
select GREEN
for Destination choose (Zone/Interface)
select ORANGE
service = ANY
protocol = ANY
Action = Allow or Allow with IPS
tick Enabled

this will then allow communication from GREEN to ORANGE

if you want to do ORANGE to GREEN
repeat the same as above but change source to ORANGE and destination to GREEN
and thats it