I have monowall installed with three network cards (LAN, WAN,DMZ). I have created a 1:1 Nat rules and firewall rules. I can access my servers from the Internet. I have five Vlans associated with the LAN interface for connecting users, I left the LAN network administrative purposes only, they all can browse the web fine.
DNS frowarder has entries that point clients trying to access local servers to the corresponding private DMZ IP. This works fine from the LAN adminsitrative network. It does not work from any of the VLANs, at best the conections begin and then time out. It seems to me that this is not a firewall rule issue. I think the Vlan tagging (teh extra VID info added to the packet) is breaking the connection to the DMZ, I know it does between vlans, I have tried changing the MTU in all interfaces but still the problem persists.. Any help/ideas will be greatly appreciated. Regards, Eric.
|