1 static ip would like to run VPN and port fwd 2 services
Guest last edited by
Hi I have a number of VPN’s terminating on my NS. I only have a single static IP from my ISP. Can I still port forward services to the trusted or DNZ zones without braking the VPN’s or do I need a seperate IP address to port forward?
Any advice would be very helpfull
yes you can (if you have a low end appliance like 5XT, 5XP, 5GT or it must be changed in newer screenos dunno).
You can check it at you interface config, there must be a tap “VIP” if you click on it and make a new one. then you should have the option same then untrust interface (if not then that appliance doesn’t support it). and then you can use your one isp address to make services public to the internet.