EW50 Industrial LTE Cellular Gateway
84
2.4.3 DMZ & Pass Through
A DMZ (Demilitarized Zone) Host is a host that is exposed to the Internet but still within the protection of a
firewall by gateway device. This function allows a computer to execute 2-way communication for Internet
games, Video conferencing, Internet telephony and other special applications. In some cases when a specific
application is blocked by NAT mechanism, you can set the LAN computer as a DMZ host to solve this problem.
The DMZ function allows you to ask the gateway to pass through all normal packets to the DMZ host behind
the NAT gateway only when these packets are not expected to be received by applications in the gateway
or by other client hosts in the Intranet. The DMZ host is also protected by the gateway firewall. Activate the
feature and specify the DMZ host with a host in the Intranet when needed.
DMZ Scenario
When the network administrator wants to set up
service daemons in a host behind a NAT gateway
to allow remote users to actively request services
from the server, the host should be configured as a
DMZ Host. As shown in the diagram, there is an X
server installed as DMZ host, whose IP address is
10.0.75.100. A remote user can request services
from X server just as it is provided by the gateway
whose global IP address is 118.18.81.33. The
gateway will forward those packets, not belonging
to any configured virtual server or applications,
directly to the DMZ host.