cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1353
Views
0
Helpful
1
Replies

Basic DMZ configuration on ASA 5510

David Grimm
Level 1
Level 1

I'm new to using ASA's and I need some general knowledge on creating a DMZ with my current configuration. Most of my configuration has been through the ASDM as I am still learning. I'm looking for a good tutorial through the ASDM to get me on my way. What I need to accomplish is this:

I have an internal GIS server which needs to have a constant database connection to an remote GIS Server which is already configured. I've got a separate VLAN setup on my 3750 switch which connects to the DMZ configured port on my ASA with a security level of 50. My GIS server has been placed in the DMZ VLAN which is accessible from my internal clients. I have a /30 Internet block which is being used for Internet and VPN. I have a separate /28 block that I'm assuming I'll need for the DMZ to work properly.

That's about as far as I've made it. Hopefully I'm on the right track. If anyone can send me in the right direction with some advice, good tutorials, etc it would be great!

Thanks!

Sent from Cisco Technical Support iPhone App

1 Reply 1

varrao
Level 10
Level 10

David,

I guess you missed on telling the version of ASA and ASDM that you are using, stilll below are some ASDM tutorial:

ASDM 6.2  ---> http://www.cisco.com/en/US/partner/docs/security/asdm/6_2/user/guide/asdmconfig.html

ASDM 6.3----->  http://www.cisco.com/en/US/partner/docs/security/asa/asa83/asdm63/configuration_guide/config.html

ASDM 6.4----> http://www.cisco.com/en/US/partner/docs/security/asa/asa84/asdm64/configuration_guide/asdm_64_config.html

There are few things that I would like to highlight in here, first, please specify from where do the DMZ servers would be accessed, is it from the internet or your internal lan? Secondly, please specify the ip addresses (could be dummy) for your DMZ server?

Since you are a starter, here is a NAT/PAT document for your reference:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008046f31a.shtml

Let me know if this helps

Thanks,

Varun

Thanks,
Varun Rao
Review Cisco Networking products for a $25 gift card