cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1008
Views
0
Helpful
1
Replies

DMZ setup for SIP

tburton
Level 1
Level 1

I am setting up a PBX in the DMZ. The handsets are going to be on the inside network. The DMZ and the inside vlans have default settings (i.e. no explicit access-groups).

For some reason even though the inside and dmz vlans are default I can't seem to ping or get to DMZ servers form the inside. Both inside and DMZ nodes can get to the outside interface.

Any help would be appreciated.

1 Reply 1

Jon Marshall
Hall of Fame
Hall of Fame

Hi

Ping uses ICMP which is not a stateful protocol. If you don't have an access-list on the DMZ interface allowing ICMP traffic back to the inside then it won't work.

If it is not just ping that is the problem have you accounted for NAT going from the inside to the DMZ ?

If you could send a copy of the config with any sensitive info removed.

HTH

Review Cisco Networking for a $25 gift card