Temporarily, create a rule from DMZ -> INT from webserver to sql server, and another rule from INT -> DMZ from sqlserver to web server. BOTH with NAT
disabled. Ensure these two rules are also AT THE TOP of the rulebases.
Then make sure that the webserver has the firewall as the default gateway ?
Test pings back and forth to ensure connectivity, then test the sql.
If it still doesnt work, try putting another rule at in the INT -> EXT allowing SQL to anywhere. As what could be happening is the webserver is getting natted behind the external VIP ip address. Thus the sql server may not have access to the EXT IO.
Let me know how you get on.
UK Based Technical Consultant
FCSE v2.5
FCSE v2.8
FCNSP v3
Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.