11-15-2009 09:18 PM
I configured our NS5GT for new ISP on the DMZ interface. DMZ interface is in route mode and ADSL modem is setup in bridge mode. I have got policies to allow traffice from
Trust to DMZ and vice versa
Untrust to DMZ and vice versa
Since I configured it I have been receiving lots of IP spoofing alerts and they are different IP to different ports on our Public IP.
I have tried to turn on screening for DMZ zone and most of the features are enabled. It is still causing issue.
Can someone please me with that?
Solved! Go to Solution.
11-15-2009 10:08 PM
Disable ip spoofing on DMZ zone via "unset zone untrust screen ip-spoofing"
If you still have the messages provide the exact event entry and "get zone DMZ screen"