cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2804
Views
0
Helpful
10
Replies

Cisco RV345 DMZ configuration

julenGenelek
Level 1
Level 1

Hi,

 

We have this network configuration in RV345:

 

WAN1: 

ip: 192.168.1.11 /24

 

VLAN1

ip: 192.168.3.11 /24

 

Hardware DMZ 

Enabled (port 16 to DMZ)

ip: 192.168.2.11

mask: 255.255.255.0

 

DMZ Host

Enabled

ip: 192.168.2.11

 

I'm trying to allow traffic from DMZ to Internet but I can't, ping to 8.8.8.8 not responding from a computer in DMZ with 192.168.2.100 ip.

 

The access rules (basics for test) i have configured:

 

DMZ to WAN1 - All traffic - Source: any - destination: any - Allowed

WAN1 to DMZ - All traffic - Source: any - destination: any - Allowed

 

But this configuration is not working.

 

What am I missing?

 

Thanks!

 

Julen.

 

PD: I attached configuration screenshots:

Access_Rules.pngFirewall-DMZHost.pngHardware_DMZ.pngVLAN_Settings.png.

 

10 Replies 10

omz
VIP Alumni
VIP Alumni

 

Yes, from the host 192.168.2.11 (this host is RV345 firewall on the DMZ port) i can ping 8.8.8.8 but from a computer behind firewall DMZ I cannot.

 

Thanks for reply.


I attached configuration screenshots.

julenGenelek
Level 1
Level 1

I've seen they are a lot of issues about DMZ port in Cisco RV series without solve........

 

I think he cisco support should say something...

julenGenelek
Level 1
Level 1

Any idea?

julenGenelek
Level 1
Level 1

I need help... Thanks!

Sorry not familiar with RV345s. Just try to help from guides.

Maybe try - 

3. Select Subnet to identify a subnetwork for DMZ services and enter the DMZ IP Address and Subnet Mask.
4. Select Range (DMZ & WAN within the same subnet) and enter the IP range
 
The host in DMZ host is working as expected, right? 
Maybe add the range from the DMZ subnet as well. 

I think the issue is in the Firmware because I've disabled the Hardware DMZ and created an VLAN with subnet 192.168.2.11/24 in the 16 port and limited the acces with rules like DMZ and it works. For that reason I think the problem is in the Firmwar and how it manage the DMZ port, I think there is a problem with the NAT o Routing between LAN/WAN ports and the DMZ port.

If you have valid Cisco contract, please raise a case with Cisco TAC and they will be able to confirm.

Sorry, could not be more helpful.


tokens
Level 1
Level 1

Hi there,

Any update on this, please?

 

I have the same problem setting up RV345 Hardware DMZ.

 

Thank you in advance.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: