We have an exchange server on our internal network. The MX record is pointed to a 2nd IP address on our T-1. I am trying to set up a translation rule to forward the mail to our interal exchange server.
Anyone know of a document that explains how to do this?
I guess what I'm trying to figure out first is how do I "grab" that other IP so when a packet goes to it NAT knows to forward it inside to exchange.
Is the 2nd ip address in the same subnet as the outside interface of your pix ? If so
static (inside,outside) "2nd ip address" "internal mail server ip address"
If the 2nd ip address is not in same subnet you need to make sure that any traffic sent to that ip address gets routed to the outside interface of the pix and then you can use the above static statement.
Okay. I tried this but as yet it's not working. I ran these commands command line and when I run it again it says there is already an existing rule so I know it's saving. But when I go into the PDM I don't see this ACL anywhere. Shouldn't that be in Access Rules?
I haven't had a chance to actually try if these changes have worked yet. A rule is a rule isn't it? If I close the PDM and come back in and I put access rules in using CLI shoudn't they show up? Just curious. I'll upload my config later on.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...