I am trying to implement a pix 515e in stages. I am able to put our exchange server behind the firewall and access it from outside, but I am having problems seeing it when on the same network as it. This is do to not being able to resolve the email servers name to its ip 10.0.0.98. I have tried static mapping the internal ip to an external one. This give the email server better function but can still not see it when sitting right behind it. I have tried setting up a wins server behind the firewall also and setting the email client to use that wins, but to no avail. I have also tried a lmhosts file, no luck. We are on a campus so the main wins is run by exteranl people. He has told me that if I let through wins it should update it with the internal ip address also. Not sure if this is true. Any ideas what I can do? I would like to be able to keep the cureent routable ip when I move the non-test server behind the firewall. Any help would be appreciated.
Are you saying that your PC and the email server are on the same network, but your WINS or DNS server are on a different segment behind the PIX, and the DNS/WINS server returns the external address of the email server?
If this is WINS there's not much you can do about it. If it's a DNS server that is returning the wrong address, then you can configure the PIX to modify the DNS record as it goes through and make it the internal address of the email server.
It is actually the other way, email server and clients are behind pix on inside interface, wins and dns are outside firewall. the internal client can not figure out that the email server is sitting right beside it. I can create a static translation from 10.0.0.98 to the external x.x.x.98 and can get to it fine from the outside. I will play with the static command and see what happens. How do I make the pix tell the client that the email server is right beside it?
DocumentationCode download linksGoalRequirementLimitationsSupported ISR
and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity
options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in
HA DocumentationCode download linksGoalRequirementLimitationsSupported
ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationCo...
Question I am currently unable to specify "crypto keyring" command when
configuring VPN connection on my cisco 2901 router. The following
licenses have been activated on my router :