Ganesh Hariharan
VIP Alumni
VIP Alumni

Hi, I have to design my DMZ. I am using Cisco ASA, Netscaler for that.

On the front end, I am using Cisco ASA 5440 having Public IP on outside & Private IP on DMZ interface.

I am connected Netscaler to DMZ interface of ASA. I will activate Private IP on both interfaces of Netscaler & would activate Static NAT of ASA for public IP which are registered with ISP.

I want to know, is it mandatory to enable Public IP on outside interface of Netscaler ? Or NAT on ASA for public IP will also work?

Hi Rupesh,

If firewall is the front end for outside world then better and safe option you apply nat for private ip address of the netscaler and permit rule as per the requirement in ASA.

Hope to help

If helpful do rate the post

Ganesh.H