<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco DMZ in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-dmz/m-p/2052840#M398464</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Joe,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please apply&amp;nbsp; the following commands&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,dmz) 10.2.0.0 10.2.0.0 netmask 255.255.0.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and if you want ping from lan to DMZ, you can apply&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list dmz_access_in extended permit icmp any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-group dmz_access_in in interface DMZ&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please let me know if you need further help&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;Harish.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 01 Oct 2012 08:18:15 GMT</pubDate>
    <dc:creator>Harish Balakrishnan</dc:creator>
    <dc:date>2012-10-01T08:18:15Z</dc:date>
    <item>
      <title>Cisco DMZ</title>
      <link>https://community.cisco.com/t5/network-security/cisco-dmz/m-p/2052839#M398462</link>
      <description>&lt;P&gt;Case closed&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 00:01:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-dmz/m-p/2052839#M398462</guid>
      <dc:creator>megamixmwangi</dc:creator>
      <dc:date>2019-03-12T00:01:51Z</dc:date>
    </item>
    <item>
      <title>Cisco DMZ</title>
      <link>https://community.cisco.com/t5/network-security/cisco-dmz/m-p/2052840#M398464</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Joe,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please apply&amp;nbsp; the following commands&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,dmz) 10.2.0.0 10.2.0.0 netmask 255.255.0.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and if you want ping from lan to DMZ, you can apply&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list dmz_access_in extended permit icmp any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-group dmz_access_in in interface DMZ&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please let me know if you need further help&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;Harish.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Oct 2012 08:18:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-dmz/m-p/2052840#M398464</guid>
      <dc:creator>Harish Balakrishnan</dc:creator>
      <dc:date>2012-10-01T08:18:15Z</dc:date>
    </item>
    <item>
      <title>Cisco DMZ</title>
      <link>https://community.cisco.com/t5/network-security/cisco-dmz/m-p/2052841#M398465</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;DMZ has lower security level than inside so you must have an ACL inbound on DMZ permitting the traffic from dmz to lan and the returning icmp messagesin reply to lan to dmz icmp messages ( as you've got no icmp inspection).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nat is only necessary if you've NAT control enabled and in this case you'll need a static(inside,DMZ) statement in addition to the aforementioned ACL.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Don't forget to rate helpful posts.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Oct 2012 08:43:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-dmz/m-p/2052841#M398465</guid>
      <dc:creator>cadet alain</dc:creator>
      <dc:date>2012-10-01T08:43:07Z</dc:date>
    </item>
  </channel>
</rss>

