<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5520 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5520/m-p/2458708#M238215</link>
    <description>&lt;P&gt;My device has 3 interfaces configured: inside, outside, DMZ.&amp;nbsp; Right now I can access the Mail server from the Internet using domain name which is on DMZ interface. The issue here is when users &amp;nbsp;they need to configure their Ms Outlook for Incoming mail server &amp;amp; outgoing mail server &amp;nbsp;FQDM e.g (mail.test.com) the ms outlook failed to connect , but when using its internal IP address 10.10.1.5 which is Mail server IP address its working fine. Are there any special statements I need to add to the ASA such as nat or ACLs to make this work?&amp;nbsp; My LAN is 192.168.1.0/24 and DMZ is 10.10.1.0/24. And My Mail server IP address is 10.10.1.5/24&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 04:14:16 GMT</pubDate>
    <dc:creator>james.lwali</dc:creator>
    <dc:date>2019-03-12T04:14:16Z</dc:date>
    <item>
      <title>ASA 5520</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520/m-p/2458708#M238215</link>
      <description>&lt;P&gt;My device has 3 interfaces configured: inside, outside, DMZ.&amp;nbsp; Right now I can access the Mail server from the Internet using domain name which is on DMZ interface. The issue here is when users &amp;nbsp;they need to configure their Ms Outlook for Incoming mail server &amp;amp; outgoing mail server &amp;nbsp;FQDM e.g (mail.test.com) the ms outlook failed to connect , but when using its internal IP address 10.10.1.5 which is Mail server IP address its working fine. Are there any special statements I need to add to the ASA such as nat or ACLs to make this work?&amp;nbsp; My LAN is 192.168.1.0/24 and DMZ is 10.10.1.0/24. And My Mail server IP address is 10.10.1.5/24&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:14:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520/m-p/2458708#M238215</guid>
      <dc:creator>james.lwali</dc:creator>
      <dc:date>2019-03-12T04:14:16Z</dc:date>
    </item>
    <item>
      <title>The best way to remedy this</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520/m-p/2458709#M238216</link>
      <description>&lt;P&gt;The best place to get firewall questions answered is the firewall forum.&lt;/P&gt;&lt;P&gt;However, the way to remedy this problem is to setup your DNS server so that it returns the 10.10.1.5 address when resolving the FQDN for internal clients. If that's not an option, then you could deploy a host file to them that statically sets it.&lt;/P&gt;&lt;P&gt;You could also put in a NAT rule that tells inside clients trying to hit the mail server public address to instead use the DMZ address but that's a bit of a hack.&lt;/P&gt;</description>
      <pubDate>Sat, 24 May 2014 16:41:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520/m-p/2458709#M238216</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-05-24T16:41:45Z</dc:date>
    </item>
  </channel>
</rss>

