I have a problem of communication between machines on a DMZ in router R1 and the machines using a router R2 as gateway. The configuration of my network is as follows:
DMZ (192.168.20.0) <----> R1 (DMZ: 192.168.20.1/24; LAN: 192.168.1.1/24; ALIAS IP: 192.168.0.1/24) <----> switch <--- -> R2 (LAN: 192.168.0.2/24)
For machines with the R2 gateway to access the DMZ from R1, I added a static route on R2 which redirects to 192.168.20 .* 192.168.0.1 (R1).
Unfortunately, the firewall blocks R2 me (no problem when it is off). The firewall I R2 generates TCP RST appears indicating that he did not receive the TCP SYNC (as if he used a triangular route). I do not like this is possible ...
Has anybody an idea?
PS:I wish to state that all machines using R2 as a gateway are connected to the switch and the LAN ports of R2 and R1