Introduction

We shall now describe how to set up a DMZ (Demilitarized Zone) with the functionality of the drop-in group.

The solution can be useful if, for example, one has access to a small IP network with public addresses. In such cases, the connection to the Internet is achieved via a gateway managed by the provider, without any administrative access.

A bintec™ router with the drop-in functionality is placed between the provider gateway and the hosts in the DMZ. The drop-in group now establishes the connection between the gateway and the DMZ, without the shared IP network being separated in the process. A private LAN network is also connected via the gateway.

The traffic between the gateway's interfaces and, therefore, between the provider gateway, the DMZ and the LAN can then be controlled using firewall rules. An address from the public IP network is required for the gateway.

The GUI™ (Graphical User Interface) is used for configuring.

Example scenario

Requirements