Это правила:
# Name Action SourceInterface SourceNetwork DestinationInterface DestinationNetwork Service
1 SAT_DNS_Relay SAT lan lannet core lan_ip dns-all
2 Allow_DNS_Realy NAT lan lannet core lan_ip dns-all
3 lan_to_wan1
4 ping_fw Allow lan lannet core lan_ip ping-inbound
В папке lan_to_wan:
# Name Action SourceInterface SourceNetwork DestinationInterface DestinationNetwork Service
1 drop_smb-all Drop lan lannet wan1 all-nets smb-all
2 allow_ping-outbound NAT lan lannet wan1 all-nets ping-outbound
3 allow_ftp-passthrough NAT lan lannet wan1 all-nets ftp-passthrough
4 allow_standard NAT lan lannet wan1 all-nets all_tcpudp
Это из лога:
Date Severity Category/ID Rule Proto Src/DstIf Src/DstIP Src/DstPort Event/Action
2007-06-07
11:04:20 Info CONN
00600002 Allow_DNS_Realy UDP lan
wan1 192.168.202.197
192.168.202.1 1497
53 conn_close
close
rev=1 conn=close
2007-06-07
11:04:18 Info CONN
00600002 Allow_DNS_Realy UDP lan
wan1 192.168.202.197
192.168.202.1 1496
53 conn_close
close
rev=1 conn=close
2007-06-07
11:04:09 Info CONN
00600001 Allow_DNS_Realy UDP lan
wan1 192.168.202.197
192.168.202.1 1521
conn_open
rev=1 satdestrule=SAT_DNS_Relay conn=open
А с сервером, извините Станислав, не понял
