Hi @BPry I have updated the diagram .Hopes it make sense now I don't see where you have a dual DMZ configured, nor do I honestly fully understand your question. I meand dual firewall dmz ,I want to ask the above design is ok ? Ideally your DMZ wouldn't be allowed to access resources in your DC, what if a web server wants to talk to a DB server inside but in the event this is needed I would have the traffic separated through different physical switches, or have the DMZ isolated to it's own VRF on any shared switches. Please provide a rough diagram Thanks for your support Hi @BPry It would be great if you can reply
... View more