Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

ISA and PIX DMZ

Status
Not open for further replies.

TheStressFactor

IS-IT--Management
Sep 24, 2002
229
US
I have a pix with an external, internal and dmz interface.

I have my isa 2004 box configured nic1 on the same internal lan as the pix (192.168.100.x) and a crossover cable going from nic2 to the dmz interface (172.16.100.x)

My first issue is my isa box can successfully ping the dmz int of the pix but the pix cannt ping the dmz ip of the isa box?

Any ideas why this may be happening? Am I missing a rule on the pix or am I missing a rule on isa?

Also, I would like my isa box to be my vpn server. I have configured vpn according to the vpn set up doc on isaserver.org I can connect to the internal ip inside my network fine. However externall it is not working....can anyone direct me on what rules I need o set up on the pix to pass vpn traffic to my isa box? Would it be me designaing an external ip to statically map pptp to the dmz ip of the isa box?

I think thats all for now. Any help or suggestions would be greatly appreciated,
 
for de vpn question try in cisco , search for emcapsulate ipsec trafic , and transversal nat.



coco10
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top