Specifications

POP3 access to the mail server for clients from the internal net-
work
Protocol TCP
Local address 192.168.10.0/255.255.255.0
Remote address 192.168.8.10
from Port 110
to Port 110
IMAP access to the mail server for clients from the internal net-
work
Protocol TCP
Local address 192.168.10.0/255.255.255.0
Remote address 192.168.8.10
from Port 143
to Port 143
SMTP access to the mail server for clients from the internal net-
work
Protocol TCP
Local address 192.168.10.0/255.255.255.0
Remote address 192.168.8.10
from Port 25
to Port 25
LDAP access to the mail server for clients from the internal net-
work
Protocol TCP
Local address 192.168.10.0/255.255.255.0
Remote address 192.168.8.10
from Port 389
to Port 389
ICMP messages from the internal network to the DMZ (not
mandatory, but desired at Example, Inc.)
Protocol ICMP
Local address 192.168.10.0/255.255.255.0
Remote address 192.168.8.8/255.255.255.248
Protocol ICMP
Local address 192.168.10.0/255.255.255.0
Remote address 80.80.80.8/255.255.255.248
2. Masquerading
All heads of department should be granted full access to the Internet.
58 Using the FAS