cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
433
Views
0
Helpful
2
Replies

Re-IP DMZ to private space, NAT to public

dtraverso13
Level 1
Level 1

Greetings,

After the initial information gathering, I find I am at a standstill as-to how I should procede.

We are currently in the process of implementing One-to-One static NAT'ing on our DMZ servers, and RE-IP'ing them to private IP space.

We need to enable DNS resolution, LDAP authentication between the DMZ servers and our network, while making them accessible tobi the public.

I'm hoping for a bit of hand-holding on this issue, since I am not sure where to begin.

2 Replies 2

dan_track
Level 1
Level 1

On which platform are you going to do this? Can you post current configuration?

Dan

vilaxmi
Cisco Employee
Cisco Employee

Hello,

Static translation for DMZ server :

static (dmz,outside) netmask 255.255.255.255

access-list inbound extended permit tcp any host

access-group inbound in interface outside // to permit the inbound TCP connections from any outside IP address to the public IP address of server//

Now, coming to your DNS resolution, I would need to know, where is you DNS server located ? For the external clients, external DNS server would take care of name resoultion.

Thank

Vijaya

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: