I buy the ASA 5505 firewall and wish to replace the existing PIX 506iE firewall.
In the old topology; there are only inside network 192.168.1.0/24 for server only and 202.**.***.217 is outside public interface. In the old setting, one server map one public ip by static NAT for public access and no other user connect to firewall.
I read the manual of ASA 5505 and it suggest put the server in DMZ but I do not wish to change the network topology. Is it OK for map the outside public IP to inside private IP without using DMZ in ASA5505? Is the setting same as PIX 506iE?
(I am not care which service pass from outside in this moment),
So Is the setting in attachment(NAT, Access list) correct now?
As long you are aware of security risks, the rules are correct. Rule is wide opened to connect to any services your 192.168.1.10 host can provide.