That works great - thanks =)
One more question ...
I know that the Pix doesn't like traffic going from the DMZ to the External interface (e.g. if a machine has 192.168.2.100, and then points to it's external internet interface xxx.xxx.xxx.100), is there a way to allow such a request?
Or do...
Hiyas,
I believe this is all that's relevant. Thanks in advance =)
: Saved
:
PIX Version 6.3(4)
interface ethernet0 auto
interface ethernet1 auto
interface ethernet2 auto
nameif ethernet0 outside security0
nameif ethernet1 inside security100
nameif ethernet2 dmz security4
fixup protocol dns...
Hi,
VPN currently goes to an internal pool of IPs behind the 'inside' interface. No gateway is defined by the PIX, so I assumed that:
route add <DMZ class C> mask <class C Netmask> <gateway>
Would work for VPN access via the inside interface to the DMZ machines.
It doesn't seem to work...
Hi all,
With this config, internal can get out to dmz, and can access the internet, but for some reason, the public net cannot access the DMZ servers.
I have a small suspicion that there's a router (the gw) which might need it's arp cache refreshed, as there is another fw in the way which...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.