12-05-2008 12:11 PM - edited 03-11-2019 07:21 AM
We have a question regarding the deployment of ASA. We are moving from PIX to ASA. Currently in the PIX we are using Alias command. It is no longer supported in the ASA. We have inside,DMZ, and outside interface. With our current setup we can access DMZ server via DMZ aadress but unable to access via their static map public IP. If I put in alias command for the dmz and public address we can address via name and public IP. How is the majority of people out there deploying this. Is everyone access DMZ via private dmz address or via public IP? or does everyone access to servers in dmz via their public IP. Please advise.
12-05-2008 12:38 PM
Most of my customers prefer to use the public IP. It's pretty easy to setup int he ASA. Here's a link of reference.
http://blogs.interfacett.com/mike-storm/2006/6/29/bidirectional-nat-on-a-cisco-pix-or-asa.html
Hope that helps.
12-05-2008 12:51 PM
Most of the issues I see are when people do not have inside DNS, in which case it would make more sense to do destination nat with the public ip. Otherwise, using the dmz address is the way to go imho.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide