
Prestige 662H/HW Series User’s Guide
CHAPTER 7
DMZ
This chapter describes how to configure the Prestige’s DMZ.
7.1 Introduction
The DeMilitarized Zone (DMZ)
These public servers can also still be accessed from the secure LAN.
By default the firewall allows traffic between the WAN and the DMZ, traffic from the DMZ to the LAN is denied, and traffic from the LAN to the DMZ is allowed. Internet users can have access to host servers on the DMZ but no access to the LAN, unless special filter rules allowing access were configured by the administrator or the user is an authorized remote user.
It is highly recommended that you connect all of your public servers to the DMZ port. If you have more than one public server, connect a hub to the DMZ port.
It is also highly recommended that you keep all sensitive information off of the public servers connected to the DMZ port. Store sensitive information on LAN computers.
7.2 Configuring DMZ
You can assign public or private IP addresses to computers connected to the DMZ port.
With public IP addresses, the WAN and DMZ ports must use public IP addresses that are on separate subnets. See the appendix for information on IP subnetting.
From the main menu, click DMZ. The screen appears as shown next.
Chapter 7 DMZ | 86 |