cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
249
Views
4
Helpful
1
Replies

NAT with official IP on DMZ

keynet
Level 1
Level 1

Hello

I have a PIX 515E (Ver.6.3.1)with three interfaces. Now I d'like to activate the DMZ interface with a official IP-address range.

Between the internel and outside interface is a NAT (PAT) configuration active. No, I have problems to configure the NAT for the DMZ interface. With the official IP-adresses on the DMZ, it is not necessary to make NAT. I d'like to configure a simple routing between the internal to DMZ and between the ouside to DMZ.

How I is the NAT configuration for the a DMZ with official IP-adresse?

Regards

Pascal

1 Reply 1

Jon Marshall
Hall of Fame
Hall of Fame

Hi Pascal

As an example lets say your DMZ addressing is

212.73.45.0/28

on your pix firewall

static (DMZ,outside) 212.73.45.0 212.73.45.0 netmask 255.255.255.240

As long as the ISP routes these addresses to your pix external interface you should have no problem.

HTH

Jon

Review Cisco Networking products for a $25 gift card