Netscreen 5GT in Extended Mode

Netscreen 5GT in Extended Mode

Secure Home | Search | About
 Networking Firewalls    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Netscreen 5GT in Extended Mode rob 05-17-2005
Posted by rob on May 17, 2005, 8:53 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Hi All,

I'm a newbie to netscreen.
I have a NETSCREEN 5GT AV/DI and I have it in Extended mode.

I have a an ADSL modem/router providing me with a fixed ip from my ISP
I also have 8 IP's also allocated from my ISP which I am using at the
moment.

What I would like to do is connect the 5GT to the adsl router/modem and have
a DMZ that has my public IP Addresses.

A diagram of what I am trying to achieve is below. Is this possible?

internet
|
62.x.x.x Static IP
(ADSL ROUTER)
10.0.0.1
|
|
10.0.0.2 (Untrusted eth3)
(-------Netscreen----)
| |
DMZ Eth2 84.12.x..1 (public ip) 192.168.x.x (trusted eth1)
| |
dmz hosts internal network nat
router 192.168.x.x



thanks in advance
Rob




Posted by Munpe Q on May 17, 2005, 4:09 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
You'll have to change the port mode mode top Extended. This will wipe
out the config that is currently on it. But once that is done, you can
do anything you want. However, you cannot specify what interfaces are
in what zone, on the 5GT it is a preconfigured setup that can't be
modified beyond the port mode.

Your diagram is a bit fubar, but is technically possible. You can put
it in route mode, but the way you have it with an ADSL router might be
painful. Is there a reason for having the Untrust zone using a
10.0.0.2 address?



Similar ThreadsPosted
Transparent mode in NS 5GT (Port mode Extended) April 27, 2006, 3:41 am
Netscreen 5GT Extended - DMZ issues September 5, 2005, 6:24 am
Netscreen 5GT Extended DMZ setup September 24, 2005, 12:31 pm
Netscreen in Transparent Mode. June 1, 2005, 9:15 am
Netscreen 5GT VIP's and Bridge Mode March 1, 2005, 4:51 pm
VPN problems from Linksys WAG54G to Netscreen 208 using netscreen client November 28, 2005, 5:36 pm
Checkpoint - Visitor mode May 12, 2005, 2:35 pm
Firewall Stealth Mode? March 11, 2006, 8:32 am
Fortigate DMZ in transparent mode November 20, 2007, 11:46 am
windows xp safe-mode help? November 9, 2008, 6:25 pm

The site map in XML format XML site map

Contact Us | Privacy Policy