Using a public subnet for DMZ without SNAT in ZyWALL USG series hardware gateways

I have a public subnet for the DMZ, but I do not want to use the bridge interface for the DMZ interface, because there is only one physical cable.
How can I use a public subnet for a DMZ without SNAT in the ZyWALL USG series hardware gateways, but keep the SNAT for the LAN subnet?




1. Navigate to Configuration > Network > Routing to configure the Policy Route policy without SNAT for network packets from a DMZ subnet.



2. Connect to the Internet via the DMZ and collect network packets on the WAN interface. You will see that the source IP address (Source) is public/external, i.e. SNAT is not used.

Articles in this section

Was this article helpful?
1 out of 3 found this helpful
Share

Comments

0 comments

Please sign in to leave a comment.