cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
255
Views
0
Helpful
1
Replies

Natting question

starmantwo
Level 1
Level 1

nameif ethernet1 inside sec100

ip address 10.0.0.1

nameif ethernet2 dmz sec10

ip address 192.168.20.1

route inside 10.10.10.0 255.255.255.0 10.0.0.2

access-list dmz permit ip any 10.10.10.0 255.255.255.0

access-group dmz in interface dmz

What static nat command would i need to permit my dmz host

to access the 10.10.10.0 subnet inside my network?

would this work..static (inside,dmz) 10.10.10.0 10.10.10.0 netmask 255.255.255.0?

1 Reply 1

The configuration you've proposed should work.

Make sure the hosts and any router(s) on the inside network have a route to the DMZ subnet via the PIX.

HTH

Sundar

Review Cisco Networking products for a $25 gift card