6
Managing your Local Area Network
104
Nokia IP45 Security Platform User’s Guide v4.0
Configuring a DMZ Network
In addition to the LAN network, the Nokia IP45 security platform allows you to define a second
internal network called a demilitarized zone (DMZ).
By default, all traffic is allowed from the LAN network to the DMZ network, and no traffic is
allowed from the DMZ network to the LAN network. You can customize this behavior by
creating firewall user rules.
For example, you can assign your company accounting department to the LAN network and the
rest of the company to the DMZ network. The accounting department would be able to connect
to all company computers, while the rest of the employees cannot access any sensitive
information on the accounting department computers. You can then create firewall rules that
allow specific computers (such as a manager’s computer) to connect to the LAN network and the
accounting department.
Table 18
DHCP Options
Field
Action
Domain Name
Enter a domain name that should be passed to the DHCP clients
Automatically
assign DNS
server
(recommende
d)
Clear this option if you do not want the gateway to act as a DNS
relay server and pass its own IP address to DHCP clients.
DNS Server 1,
2
Type the IP addresses of the primary and secondary DNS servers
to pass to DHCP clients instead of the gateway.
Automatically
assign WINS
server
Clear this option if you do not want DHCP clients to be assigned
the same WINS servers as specified by the Internet connection
configuration (in the Internet setup page).
WINS Server
1, 2
Type the IP addresses of the primary and secondary WINS
servers to be used instead of the gateway.
Time Server
Type the IP address of the primary and secondary NTP servers.
Call Manager
Type the IP address of the primary and secondary VoIP servers.
TFTP Server
Type the IP address of the TFTP server.
TFTP Boot
File
Type the boot file to use for booting DHCP clients through TFTP.
X-Windows
Display
Manager
IP address of the X-Windows server