05-04-2012 12:47 AM - edited 03-07-2019 06:30 AM
I have the rv042 vpn router which is the main gateway for our internet, connected to the vpn is one server for a software and then another computer is connected for a web server software, well i need to get these setup like so, but have no clue how to do so
05-07-2012 06:03 AM
Hi
i m not familiar with this type of vpn router and what networks you have running already, so its a guess, but i ll give it a try.
1. Firewall rule for incoming traffic
You should define 2 rules, one to permit https to your webserver and one to block all other incoming traffic.
( i assume its a statefull firewall)
permit tcp any host
deny ip any any
Apply rules to internet interface for incoming traffic
2. Firewall rules to block traffic between 2 internal networks (i assume its tcp traffic)
permit tcp any any eq 7000
permit tcp any any eq 1702
deny ip any any
if all traffic is tunneled here to the other network there is no problem.
Apply these rules to the network interfaces of the 2 networks
if not all is tunneled and If the computer in one network should also have access to the webserver in the other network, be sure to add a rule for that and maybe also for administration purposes
permit tcp any
permit tcp any
and be also sure to:
allow dns, tftp and dhcp traffic if nessecary.
You could add this in step 2 by a adding a couple of more rules
permit udp any any eq 53
permit udp any any eq 68
permit udp any any eq 69
and add them before the deny ip any any
I used cisco like cli code in these examples. Like i said i m not familiar with this box.
05-07-2012 07:27 AM
Well the vpn has a web gui interface, but i believe i might be able to accomplish what your stating here, thats kind of what i had envisioned in my head, but not all the way through, im going to try that out and see if it works, i'll update afterwards, thank you.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide