so I have to do this also !
please can someone verify that this will work
1. add two row to screend.conf
from interface blue to interface red tcp port telnet proxy;
from interface blue to interface red tcp port ftp proxy;
after add these these
from interface red to interface blue tcp port telnet proxy;
from interface red to interface blue tcp port ftp proxy;
2. via qui add external read user group and internal blue server group
3. modify telnet custom policy via qui
and allow external_group telnet to internal_servers
4. modify ftp custom policy via qui
------" ------------
5. Add internal_server group server to external DNS
6. add routing info to internet so packets find their way to internal network
Marko
|