Need Help with Secure Network Architecture Guided Exercise 1.2 Last Task Question

Hi. I completed successfully parts 1-3.
In the Part 4 last step, I am allowing Internet users secure web access to the Company Website server in the DMZ. The directions are very straight forward and I triple checked that I completed them directly but the last instruction:

In the root@Test-External tab, type curl -k https:// (where is the IP Address of the External firewall’s WAN interface) and press Enter.

The IP address is: 192.168.1.100 and is correct per the tasks.

I am not sure why this is not working. Can someone help me out?
nmap and curl both indicate the IP is non-responsive and hence blocked on the Test-External Server.

I am trying to answer the last task question…

5. After Port Forwarding was enabled, what response did you get from the Company-Webserver using curl?

Thank you.

  1. In the root@Test-External tab, type curl -k https:// (where is the IP Address of the External firewall’s WAN interface) and press Enter.

192.168.1.100 is not the External firewall’s WAN interface :slight_smile:

You can see this IP when the firewall boots up, and in Step 6 you look for it explicitly and have to answer a question on the Tasks tab about it.

Remember NAT/PAT translate IPs from one subnet to another: in this case from the “Internet” to an internal system.

1 Like

Thank you so much. That was it. Much appreciated!!!

1 Like

Wow thanks, I would’ve been stuck for ages on that one.