cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
272
Views
0
Helpful
2
Replies

Problem with NAt 0

kylesmith
Level 1
Level 1

I have a PIx 515 with 3 interfaces.I have a webserver and mail server in the dmz and i'm using to PIX's as a VPN Server.The problem that I'm having is all user on the Internal network can't browse the Internet. I have narrowed it down to nat (inside) 0 command. IF I take the nat out than my VPN client can browse the internal network. Is there away around this problem?

2 Replies 2

paqiu
Level 1
Level 1

nat (inside) 0 access-list bypass the nat for the traffic between the VPN client to your inside network behind the PIX.

The most important thing is make sure your config the access-list correctly.

I belive your access-list using for nat inside 0 is wrong.

Please check more details in following url for how to config the access-list for nat inside 0

http://www.cisco.com/warp/customer/110/39.html

Best Regards,

abdul.kokumo
Level 1
Level 1

I think this link will help better:

http://cisco.com/warp/customer/110/mailserver_dmz.html

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: