02-11-2009 09:34 PM - edited 03-11-2019 07:49 AM
There is this website that always capture the internal IP addresses of my network instead of the public IP address on the outside interface of the PIX firewall.
Please, I need to stop this issue fast. Any suggestion?
02-12-2009 06:17 AM
is your firewall confgure for NAT ?
02-12-2009 06:36 AM
Yes. the config is below
nat-control
global (outside) 1 interface
nat (inside) 1 172.19.0.0 255.255.0.0
and there is a squid proxy server on network through which all internal hosts must pass through to the internet.
02-12-2009 06:44 AM
OK - three more questions:-
1) What is the outside interface IP - is it the same IP you see on w*w.whatismyip.com
2) What is the squid proxy sever IP
3) does the squid proxy server default route point to the firewall
HTH>
02-12-2009 06:56 AM
Answer
1. Yes
2. 172.19.2.226
3. The default route is pointing to the default gateway of the DMZ it's seating. i.e 172.19.2.1.
02-12-2009 07:02 AM
Then it is working correctly - the internet will see the source IP address of the outside interface IP?
You are natting ALL internal inside IP addresses to the outside interface IP address.
02-12-2009 07:07 AM
Well if you say so but browsing on this website www.walahi.com which is an online bookshop and while trying to checkout brings out my host local IP instead of the outside interface IP as the case with www.whatismyip.com.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: