<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic NAT and or DNS Problem? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nat-and-or-dns-problem/m-p/1709619#M560950</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Johan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are the users also on the DMZ network and trying to access the server in the DMZ? Then you will need u turning. Here is how you do that:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (dmz,dmz) &lt;PUBLIC ip="" of="" server=""&gt; &lt;PRIVATE ip="" of="" the="" server=""&gt;&lt;/PRIVATE&gt;&lt;/PUBLIC&gt;&lt;/P&gt;&lt;P&gt;same-security-traffic intra interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But if the users are on the inside interface and trying to access the server in DMZ, you don't need u-turning.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anu&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 13 Jun 2011 07:12:57 GMT</pubDate>
    <dc:creator>Anu M Chacko</dc:creator>
    <dc:date>2011-06-13T07:12:57Z</dc:date>
    <item>
      <title>NAT and or DNS Problem?</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-or-dns-problem/m-p/1709618#M560948</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Got a case here where users are befind a firewall, the firewall have for short inside,outside and dmz interfaces. Users access a website that is localted on the dmz network. However, the webserver have an external ip adress that is nated into the dmz adress, Users are accessing the external ip adress and the external dns. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I´ll guess we have to do some NAT U turn in order to make this work, the flow is like this. inside -&amp;gt; outside -&amp;gt; dmz -&amp;gt; inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;//Johan&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:44:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-or-dns-problem/m-p/1709618#M560948</guid>
      <dc:creator>ruliffilur</dc:creator>
      <dc:date>2019-03-11T20:44:11Z</dc:date>
    </item>
    <item>
      <title>NAT and or DNS Problem?</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-or-dns-problem/m-p/1709619#M560950</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Johan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are the users also on the DMZ network and trying to access the server in the DMZ? Then you will need u turning. Here is how you do that:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (dmz,dmz) &lt;PUBLIC ip="" of="" server=""&gt; &lt;PRIVATE ip="" of="" the="" server=""&gt;&lt;/PRIVATE&gt;&lt;/PUBLIC&gt;&lt;/P&gt;&lt;P&gt;same-security-traffic intra interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But if the users are on the inside interface and trying to access the server in DMZ, you don't need u-turning.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anu&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Jun 2011 07:12:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-or-dns-problem/m-p/1709619#M560950</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-06-13T07:12:57Z</dc:date>
    </item>
    <item>
      <title>NAT and or DNS Problem?</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-or-dns-problem/m-p/1709620#M560951</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Anu&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry forgot to mention that, all users are on the inside interfance, I also should mention that its only the guest network that has these problems, our regular user networks can access the webserver without any problems at all. There might be a nat in the firewall for those but at this time iam not sure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;//Johan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Jun 2011 07:19:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-or-dns-problem/m-p/1709620#M560951</guid>
      <dc:creator>ruliffilur</dc:creator>
      <dc:date>2011-06-13T07:19:18Z</dc:date>
    </item>
    <item>
      <title>NAT and or DNS Problem?</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-or-dns-problem/m-p/1709621#M560954</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Johan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What version of ASA are you using? Could you post the output of "sh run" here? Please specify the public and private IP address of the server in DMZ.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anu&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Jun 2011 07:59:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-or-dns-problem/m-p/1709621#M560954</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-06-13T07:59:17Z</dc:date>
    </item>
  </channel>
</rss>

