DMZ functionality
- August 3, 2020
- 3 replies
- 12040 views
Hello everyone,
I am new into working with firewalls. I took some online classes and learned to do small activities, like filtering trafic from web. But now I face a problem: I need to set-up a DMZ (on a Fortigate E-50) with a particular action - Remote Desktop Gateway.
I mention from start that I know how to configure the PCs already, for RD gateway as well. However I am facing issue with the traffic between networks. The setup cannot be changed to a simpler version, you can see the layout attached to this topic.
Host PC: 50.2.2.40/16 Gateway: 50.2.2.100
DMZ PC: 50.4.1.1/24 Gateway: 50.4.1.100
Client PC: 10.10.30.1/24 Gateway 10.10.30.100
Firewall P1: 50.2.2.100/16 Internal Network - configured as Interface/hardware switch
Firewall P2: 50.4.2.100/24 DMZ Network - configured as Interface/hardware switch
Firewall P3: 10.10.30.100/24 External Network - configured as Interface/hardware switch
I am configuring traffic from Internal to DMZ with port 3389 open. Also External to DMZ with port 3389. I cannot make a connection from External to DMZ or Internal to DMZ. I tried will all ports open and all availeble services. I cannot even get a ping from internal/external to DMZ. So, no chance to go from Internal to External.
Can someone help me to understand exactly what I am not doing or doing wrong?
Thanks for helping
