cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
255
Views
0
Helpful
1
Replies

One IP cannot access DMZ - can't determine cause

PE-PatInBC
Level 1
Level 1

Hi, I've got an issue I've been digging into for some time. Every few weeks, one of my users cannot access our own secure website (via WAN or LAN interface) and receives a connection timeout when trying. Changing the IP address of the PC in question gets everything working again. I can't find anywhere in the firewall log (PIX 515e) that shows anything being blocked, and our ACL enables traffic to flow (almost) freely to our DMZ and has never had a problem before. Could it be a DNS issue? from our internal DNS or external?

1 Reply 1

ARUNPRABHU A
Level 1
Level 1

HI,

Do You access DMZ with your LAN ip address itself?

Accessing the DMZ using Dynamic NAT ?

If you are using Dynamic NAT this kind of issues can persist, then better go for PAT.

Regards, Arun

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Innovations in Cisco Full Stack Observability - A new webinar from Cisco