Allow access from RAS CISCO PIX

From: Fidelio (Fidelio_at_arrakis.net)
Date: 12/31/04


Date: Fri, 31 Dec 2004 10:24:26 +0100

I have a dmz called dmzras with network address 192.168.102.0 and a inside
network which belongs to 10.0.0.0 255.0.0.0. I want to give access from any
dmzras ip to any inside ip but having NAT to the CISCO PIX inside address in
order to avoid routing the network 192.168.102.0.

So I place this:

access-list inside_access_in permit ip 192.168.102.0 255.255.255.0 any

But I have no idea on how to configure the NAT rule to give all incoming
traffic from dmzras to inside the ip address of the firewall at inside
interface.

Thank you in advance.
Fidelio



Relevant Pages

  • Help with NAT definition
    ... I need help with NAT in a CISCO PIX 515E. ... I have a dmz called dmzras with network address 192.168.102.0 and a inside ...
    (comp.security.firewalls)
  • Re: Load Balance Error Message
    ... as described below that is a nat rule (Nat rule beteen internal ... External network is NOT Load balanced because this are 2 different DSL ... creating a "Route" between external and internal networks is a ... Nat rule beteen external and internal/perimeter ...
    (microsoft.public.isa.enterprise)
  • Re: Load Balance Error Message
    ... i still receive mails, and internet is working. ... To load balance between two different ... external network connections, you need to use 3rd party stuff like EMC ... as described below that is a nat rule (Nat rule beteen internal ...
    (microsoft.public.isa.enterprise)
  • Re: Spoof Protection With Firewall-1
    ... the network as well. ... In our NAT rule, we only change the destination address to agree with ... addresses in the DMZ networks. ... We don't modify the source address which is ...
    (comp.security.firewalls)
  • Re: pf - howto enable connection between 2 win2k PCs w2k<>$ext_if<[OBSD-pf]>$int_if<&
    ... Set routing on your WIN2K-1 so that all packets addressed ... Use no nat rule to disable natting packets coming from network ...
    (comp.unix.bsd.openbsd.misc)