<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Web Server access from one DMZ to other in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846263#M959313</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Waseem &lt;/P&gt;&lt;P&gt;  Please tell me in which DMZ your webserver is located, its IP and from which interface you want to reach webserver from which IP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 11 Dec 2007 09:49:53 GMT</pubDate>
    <dc:creator>Alan Huseyin Kayahan</dc:creator>
    <dc:date>2007-12-11T09:49:53Z</dc:date>
    <item>
      <title>Web Server access from one DMZ to other</title>
      <link>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846261#M959309</link>
      <description>&lt;P&gt;I have a pair of cisco PIX 525 with Pix version 6.3 (4), I am trying to configure the web server access from one dmz interface to other. I tried couple of scenario but could not workout.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The configuration I did is as follow&lt;/P&gt;&lt;P&gt;1. Create the static nat &lt;/P&gt;&lt;P&gt;static (PACS_DATA,EPCT) 192.168.217.13 10.150.61.68 netmask 255.255.255.255 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. Created the access list and nat to exempt from the nat&lt;/P&gt;&lt;P&gt;access-list EPCT_nat permit ip any 10.150.61.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;nat (EPCT) 0 access-list EPCT_nat&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3. Created the access list to permit all the traffic to access web server&lt;/P&gt;&lt;P&gt;access-list EPCT_in permit tcp 192.168.216.0 255.255.254.0 host 192.168.217.13 eq www&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My firewall configurations are as follow&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nameif ethernet2 EPCT security9&lt;/P&gt;&lt;P&gt;nameif vlan486 PACS_DATA security16&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;global (EPCT) 1 interface&lt;/P&gt;&lt;P&gt;nat (EPCT) 1 192.168.216.0 255.255.254.0 outside 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (PACS_DATA) 0 access-list PACS_DATA_NAT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;any help will be highly appriciated &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 11:39:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846261#M959309</guid>
      <dc:creator>meesaw</dc:creator>
      <dc:date>2019-03-11T11:39:35Z</dc:date>
    </item>
    <item>
      <title>Re: Web Server access from one DMZ to other</title>
      <link>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846262#M959311</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry i foget to tell i am getting this error messge in logs &lt;/P&gt;&lt;P&gt;PIX-3-305006: regular translation creation failed for icmp src xxxx dst xxxx(type 8, code 0)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2007 18:31:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846262#M959311</guid>
      <dc:creator>meesaw</dc:creator>
      <dc:date>2007-12-06T18:31:35Z</dc:date>
    </item>
    <item>
      <title>Re: Web Server access from one DMZ to other</title>
      <link>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846263#M959313</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Waseem &lt;/P&gt;&lt;P&gt;  Please tell me in which DMZ your webserver is located, its IP and from which interface you want to reach webserver from which IP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Dec 2007 09:49:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846263#M959313</guid>
      <dc:creator>Alan Huseyin Kayahan</dc:creator>
      <dc:date>2007-12-11T09:49:53Z</dc:date>
    </item>
    <item>
      <title>Re: Web Server access from one DMZ to other</title>
      <link>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846264#M959315</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;my webserver is in PACS Vlan DMZ and my clints are in EPCT DMZ. Webserver IP is 10.150.61.41 and my EPCT subnet is 192.168.216.0 /23. i want to configure the access of all EPCT to this webserver.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Dec 2007 18:21:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846264#M959315</guid>
      <dc:creator>meesaw</dc:creator>
      <dc:date>2007-12-11T18:21:42Z</dc:date>
    </item>
    <item>
      <title>Re: Web Server access from one DMZ to other</title>
      <link>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846265#M959317</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;static (EPCT,PACS_DATA) 192.168.216.0 192.168.216.0 255.255.254.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list EPCT_in permit tcp 192.168.216.0 255.255.254.0 host 192.168.217.13 eq www &lt;/P&gt;&lt;P&gt;access-group EPCT_in in interface EPCT&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Dec 2007 18:35:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846265#M959317</guid>
      <dc:creator>acomiskey</dc:creator>
      <dc:date>2007-12-11T18:35:41Z</dc:date>
    </item>
    <item>
      <title>Re: Web Server access from one DMZ to other</title>
      <link>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846266#M959319</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Adam shouldnt it be as following since clients has to reach Web server?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (EPCT,PACS_DATA) 10.150.61 41 10.150.61.41 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;access-list epct_access_in permit tcp 192.168.216.0 255.255.255.0 host 10.150.61.41 eq www&lt;/P&gt;&lt;P&gt;access-group epct_access_in in interface EPCT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(If you already have an ACL grouped to interface, add the ACL in it, dont use the ACL name above)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Dec 2007 20:13:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846266#M959319</guid>
      <dc:creator>Alan Huseyin Kayahan</dc:creator>
      <dc:date>2007-12-11T20:13:35Z</dc:date>
    </item>
    <item>
      <title>Re: Web Server access from one DMZ to other</title>
      <link>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846267#M959322</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;any update here?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 12 Dec 2007 22:05:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/web-server-access-from-one-dmz-to-other/m-p/846267#M959322</guid>
      <dc:creator>Alan Huseyin Kayahan</dc:creator>
      <dc:date>2007-12-12T22:05:47Z</dc:date>
    </item>
  </channel>
</rss>

