cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
472
Views
0
Helpful
1
Replies

ASA with public DMZ

bargerjc8
Level 1
Level 1

I'm installing an ASA 5505. I have public IPs for both the DMZ and the outside interface. Do I still need to set up some sort of address translation through the ASA or will it automatically go through to the DMZ? For example, if someone on the internet wants to get to the webserver in my DMZ, it already has a public address, do I need to do anything special on the ASA to direct it there?

Thanks.

1 Reply 1

Yes, you still need a static translation for the outside users to access the server on the DMZ.You can use the actual web server address in the (dmz, outside) translation. You also need to apply access list on the outside interface, assuming it has lower security than DMZ, to allow access to the web server.

Here's an example that you may find helpful;

http://www.cisco.com/en/US/products/ps6120/products_getting_started_guide_chapter09186a00805e2922.html

HTH

Sundar

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card