Statically NAT DMZ Destinations based on Outside Source

Unanswered Question
Apr 2nd, 2008
User Badges:

Would like information or direction on a issue I face. On FWSM I have 3 interfaces. Outside, DMZ-A and DMZ-B I would like traffic from outside source IP 172.16.0.0 destined to 10.2.2.2 go to DMZ-A host 10.2.2.2. Then Traffic from 192.168.100.0 destined for 10.2.2.2 to go to translated host 10.2.2.2 really 10.20.20.20 behind DMZ-B. Normally this would be a static but since I need one range of source IPs to go to real 10.2.2.2 and the second range of IPs requesting 10.2.2.2 to go to the translated host 10.20.20.20. Do I need one static and a NAT ACL or two NAT ACLs.


OUTSIDE

|

/ \

DMZ-A DMZ-B

/ \

10.2.2.2 10.20.20.20


Thanks in advance

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.

Actions

This Discussion