OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: 2 Firewalls
From: Tony Sun (KTHK) (TonySunkeytrend.com.hk)
Date: Wed Nov 08 2000 - 22:50:35 CST


Hi,
I have a dual homed firewall running Guardian Pro. The following is the
configuration:

LAN2 ==>Firewall2==>
>Firewall1======>Router==>internet
                    LAN1====>

Firewall 1:
-------------------------
External nic (VLAN):
ip: 10.0.0.1
mask: 255.255.255.0
gw: 10.0.0.2
Internal nic: (connecting to 192.168.10.x)
ip: 192.168.10.254

LAN1:
--------
192.168.10.x
GW 192.168.10.254

Firewall 2:
-------------------------
External nic (VLAN):
ip: 10.0.0.1
mask: 255.255.255.0
gw: 10.0.0.2
Internal nic: (connecting to 192.168.10.x)
ip: 192.168.10.254

LAN2:
-------------------------
Workstations:
ip: 192.168.10.x
gw 192.168.10.254

What I want to do is make the LAN2 workstations able to connect (Ping) to
LAN1 workstations and vice versa.
I have set the firewall2 to "allow pass all" in the rule.

The LAN2 workstations can pass through the firewall and access internet, but
no body (LAN1 and Internet) can get into (Ping) the LAN2 workstations. Why?

What is the functionality of VLAN?

What will be the IP of the Firewall2 as seen from LAN1?

I am still a beginner in the firewall technology and comment is appreciated!
Thanks
Tony

-
[To unsubscribe, send mail to majordomolists.gnac.net with
"unsubscribe firewalls" in the body of the message.]