<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic SERVERS ON DMZ in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/servers-on-dmz/m-p/2664556#M205045</link>
    <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a cisco asa 5545 on which the DMZ port is connected to the 2960 switch.Also i have two servers connected to the L2 switch which needs to be routed to Internet.&lt;/P&gt;&lt;P&gt;My question is can I make these two servers access the&amp;nbsp;&amp;nbsp;internet through the single dmz port? Also these servers are connected to the switch on the ame vlan and the switch in turn to the dmz port of the firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 05:34:44 GMT</pubDate>
    <dc:creator>mudasir05</dc:creator>
    <dc:date>2019-03-12T05:34:44Z</dc:date>
    <item>
      <title>SERVERS ON DMZ</title>
      <link>https://community.cisco.com/t5/network-security/servers-on-dmz/m-p/2664556#M205045</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a cisco asa 5545 on which the DMZ port is connected to the 2960 switch.Also i have two servers connected to the L2 switch which needs to be routed to Internet.&lt;/P&gt;&lt;P&gt;My question is can I make these two servers access the&amp;nbsp;&amp;nbsp;internet through the single dmz port? Also these servers are connected to the switch on the ame vlan and the switch in turn to the dmz port of the firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:34:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/servers-on-dmz/m-p/2664556#M205045</guid>
      <dc:creator>mudasir05</dc:creator>
      <dc:date>2019-03-12T05:34:44Z</dc:date>
    </item>
    <item>
      <title>Yes, just give them an IP</title>
      <link>https://community.cisco.com/t5/network-security/servers-on-dmz/m-p/2664557#M205047</link>
      <description>&lt;P&gt;Yes, just give them an IP from the subnet used for that vlan&amp;nbsp;and use the dmz interface on the ASA as their default gateway.&lt;/P&gt;&lt;P&gt;Then depending on the access you need setup the NAT statements and the acl rules.&lt;/P&gt;&lt;P&gt;If you want external access you will need static NAT entries and allow that the traffic in an acl applied inbound to your outside interface.&lt;/P&gt;&lt;P&gt;If you just want the servers to be able to go out to the internet then you need a dynamic NAT statement and no need for an acl.&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2015 14:32:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/servers-on-dmz/m-p/2664557#M205047</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-03-02T14:32:31Z</dc:date>
    </item>
    <item>
      <title>thanks Jon for the reply, I</title>
      <link>https://community.cisco.com/t5/network-security/servers-on-dmz/m-p/2664558#M205061</link>
      <description>&lt;P&gt;thanks Jon for the reply,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I gave them the ip from the same subnet and used dmz interface ip as there default gateway.&lt;/P&gt;&lt;P&gt;I made use of public server feature on my ASA for each individual server by creating separate rules,however one of them worked and the other didn't,not sure why.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2015 14:36:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/servers-on-dmz/m-p/2664558#M205061</guid>
      <dc:creator>mudasir05</dc:creator>
      <dc:date>2015-03-02T14:36:15Z</dc:date>
    </item>
    <item>
      <title>Not sure what the public</title>
      <link>https://community.cisco.com/t5/network-security/servers-on-dmz/m-p/2664559#M205071</link>
      <description>&lt;P&gt;Not sure what the public feature is but can you post the configuration (by all means change the IPs to hide information).&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2015 14:39:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/servers-on-dmz/m-p/2664559#M205071</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-03-02T14:39:43Z</dc:date>
    </item>
  </channel>
</rss>

