<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic DMZ-out-DMZ help! in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/dmz-out-dmz-help/m-p/2187703#M359888</link>
    <description>&lt;P&gt;I have a server in our DMZ which monitors one of my https site which is also in the DMZ&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Monitioring system in the DMZ 10.100.100.10 (nat-ed IP address say = 11.11.21.10)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTTPS ip address in DMZ 10.100.100.20 (nat-ed IP address say = 11.11.21.20) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What im trying to do is monitor the external ip address of the https web site e.g.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;DMZ&amp;nbsp; --&amp;gt; Out&amp;nbsp; "then back in"&amp;nbsp; Out--&amp;gt; DMZ&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it possible to do this or is it not possible to go out from the DMZ to the external interface and for it to come back in to the DMZ?&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 01:16:15 GMT</pubDate>
    <dc:creator>iirvine</dc:creator>
    <dc:date>2019-03-12T01:16:15Z</dc:date>
    <item>
      <title>DMZ-out-DMZ help!</title>
      <link>https://community.cisco.com/t5/network-security/dmz-out-dmz-help/m-p/2187703#M359888</link>
      <description>&lt;P&gt;I have a server in our DMZ which monitors one of my https site which is also in the DMZ&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Monitioring system in the DMZ 10.100.100.10 (nat-ed IP address say = 11.11.21.10)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTTPS ip address in DMZ 10.100.100.20 (nat-ed IP address say = 11.11.21.20) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What im trying to do is monitor the external ip address of the https web site e.g.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;DMZ&amp;nbsp; --&amp;gt; Out&amp;nbsp; "then back in"&amp;nbsp; Out--&amp;gt; DMZ&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it possible to do this or is it not possible to go out from the DMZ to the external interface and for it to come back in to the DMZ?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 01:16:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-out-dmz-help/m-p/2187703#M359888</guid>
      <dc:creator>iirvine</dc:creator>
      <dc:date>2019-03-12T01:16:15Z</dc:date>
    </item>
    <item>
      <title>DMZ-out-DMZ help!</title>
      <link>https://community.cisco.com/t5/network-security/dmz-out-dmz-help/m-p/2187704#M359890</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Generally it would be simpler just to monitor the server using the local IP address since the monitoring host is in the same local network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to specifically monitor the public/NAT IP address that is used towards some other interface than "DMZ" then you will have to play around with NAT which I personally dont like myself.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You would probably need to do a NAT that has the DMZ as both the source and destination interface. Possibly also a Dynamic NAT and a "same-security-traffic permit intra-interface"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What software are you using on the firewall?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And what is you current NAT configuration?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Mar 2013 12:04:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-out-dmz-help/m-p/2187704#M359890</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2013-03-19T12:04:48Z</dc:date>
    </item>
  </channel>
</rss>

