DMZ firewall setup rule help

Hi,

I have a dev router behind a main production router. I would like the dev router to be in the DMZ for testing purposes. I have the an ether7 setup as the DMZ interface on my 2011 production router with a separate network setup for it. I have a DHCP server running on ether7 it to test DHCP clients on the dev router. This is all working perfectly. What firewall rules should I use on the main production router to allow the dev router to get out the DMZ interface? The dev router has complete firewall, dhcp, dns, etc… I have a firewall address list setup for the DMZ network. I would think a simple nat rule should work but I cannot get it to go. Any help appreciated.

anyone?

To assist you properly, we need more info, as a starter, a diagram/drawing of what you want to achieve with output of both routers firewall filter & NAT rules will be good

You can get the output from terminal in winbox using:
/ip firewall filter print
/ip firewall nat print