Re: [Fwbuilder-discussion] Policy rule on dual homed machine
Brought to you by:
mikehorn
From: ted c. <tcr...@ea...> - 2006-03-04 23:29:36
|
Would this be for the generalized "Policy" tab, or under the "internal" tab which corresponds to the eth1 interface? thanks. tedc Vadim Kurland ✍ wrote: > > On Mar 2, 2006, at 3:10 PM, ted creedon wrote: > >> For a machine with an eth0 (external) and an eth1 (internal 10.1.1.1) >> interface should the Policy: >> >> "Source net-10.1.1.1 Destination net-10.1.1.1 Service Any Accept" >> >> allow unrestricted access to all packets to and from the firewall to >> any machine on the 10.1.1.1 internal network which is connected thru >> the eth1 LAN card which is physically connected to the internal net? > > > > to allow communication to and from the firewall you should put > firewall object or its interface in the corresponding rule element. > > --vk > |