Archived from groups: comp.security.firewalls (More info?)
Hello,
I have a classical PIX 515 with 3 interfaces.
Outside is, for example, 195.238.10.10/28
Inside is 10.10.10.0/25
DMZ is 192.168.25.0/27
..1 is always the ip of the ethernet adapter facing those networks.
In the DMZ, I have an FTP server. I know it is ad but that server
needs to send data to a machine located in the inside network.
I should do "static" to achieve so. But, I do not want the ftp server
to know the real IP address of the inside server (NFS)
If that internal server is 10.10.10.10, how do add make sure it is
192.168.30.30 for the ftp server? I have to do such a reverse NAT?
What's up with the routing?
Many thanks,
MAXIMUS
Hello,
I have a classical PIX 515 with 3 interfaces.
Outside is, for example, 195.238.10.10/28
Inside is 10.10.10.0/25
DMZ is 192.168.25.0/27
..1 is always the ip of the ethernet adapter facing those networks.
In the DMZ, I have an FTP server. I know it is ad but that server
needs to send data to a machine located in the inside network.
I should do "static" to achieve so. But, I do not want the ftp server
to know the real IP address of the inside server (NFS)
If that internal server is 10.10.10.10, how do add make sure it is
192.168.30.30 for the ftp server? I have to do such a reverse NAT?
What's up with the routing?
Many thanks,
MAXIMUS