cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1416
Views
0
Helpful
3
Replies

DMZ1 to DMZ2

Foscoe
Level 1
Level 1

I have an ASA 5506-x running Software Version 9.9(1), and have configured basically 2 DMZs. DMZ1 has a web server and RDB configured and that is working find. I created another DMZ (DMZ2) and have a bare bones ESXi host setup on it. What I would like to do is be able to go from my computer with the web server (DMZ1) and control the ESXi host on DMZ2. I have tried making the security level of DMZ1 higher but does not work. I also have the following configured to no avail

 

same-security-traffic permit inter-interface
same-security-traffic permit intra-interface

 

I am a bit of a novice at this so any help would be appreciated. Thanks in advance

 

1 Accepted Solution

Accepted Solutions

Yes the problem is solved. Thanks for your replies. Rookie mistake :)

View solution in original post

3 Replies 3

Dennis Mink
VIP Alumni
VIP Alumni

why would you want this scenario?

 

why not manage the DMZ hosts from Internal as its usually done?  (which doesnt mean your scenario wouldnt work)

Please remember to rate useful posts, by clicking on the stars below.

Marvin Rhoads
Hall of Fame
Hall of Fame

Please share your configuration so we can assist better.

 

If you cannot do that then try running packet-tracer on the ASA to see why the traffic isn't being allowed (assuming it's indeed an ASA problem).

Yes the problem is solved. Thanks for your replies. Rookie mistake :)

Review Cisco Networking for a $25 gift card