Hi,
Used the config from https://www.edgerouterconfig.nl/basis-community-config/ with v1.8 ERL firmware which has the following configurations:
eth0 = WAN
eth1 = LAN
eth2 = DMZ
WAN is on the basis of DHCP
LAN has subnet 192.168.1.0/24
DMZ has subnet 192.168.200.0/24
DNS forwarding based OpenDNS
Some example firewall rules
SSH GUI and accessible only from the LAN
Hardware Offload enabled
Bogon networks defined and applied to WAN LOCAL, WAN, LAN and WAN-DMZ
BUT
§1. LAN can ssh to DMZ, but no services (http/s) are accessible from LAN.
§2. WAN cannot reach DMZ inclucing ssh where the web services are running.
Any inputs apreciated! Thanks.