12-18-2006 04:03 AM - edited 03-11-2019 02:10 AM
Hi, I have a question about the physical setup of both of these. I have an ASA which is my internet firewall and the CSC-SSM. The inside of the internet firewall is connected to a Private DMZ. I have also connected the management of the CSC-SSM to this private DMZ. I have another firewall also connected to this private DMZ which links to the inside Network. If I make the inside of the ASA the default gateway for the CSC SSM, I cannot manage the CSC-SSM. Traffic is going to it from the inside network but it doesn't get back. If I make the firewall linking the private DMZ and inside network the default gateway, I can manage the CSC-SSM but the updates don't work correctly (i.e. it will only download some updates) Anybody any suggestions how they connected theirs up?
12-18-2006 08:51 AM
Hi,
How about configuring source NAT for your clients that will manage the CSC-SSM in the inside firewall and having the default gateway pointing to internet firewall?
Anthony
12-19-2006 03:55 AM
Thanks for the reply Anthony. Unfortunately we are not natting on the inside firewall and it would require a big change of infrastructure to implement something like that.
12-20-2006 06:51 AM
Just an update if anybody else is working with these. I put the Management of the CSC SSM on the inside network and it worked fine. There is no routing table on the CSC SSM.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide