cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
471
Views
0
Helpful
7
Replies

PIX 7.0.1 and DMZ

ph0enix
Level 1
Level 1

I'm trying to find an example of a config for PIX515 running PIX 7. The PIX has 3 ports:

outside

inside

dmz

I have the inside segment configured on 10.0.0.0/24 and I want to have the DMZ segment on 172.16.0.0/24. It currently has splittunel configured for VPN access.

Any info would be appreciated.

7 Replies 7

Patrick Laidlaw
Level 4
Level 4

Hello,

It helps to have your configuration posted or attached.

Patrick

Here you go (attached).

Thank you!

I'm looking at this example but it's for PIX 6.x and my DMZ server doesn't have a real IP address so the external IP needs to be NATted.

I have read your post a couple of times and I am having problems understanding what are you trying to achieve .. can you please explain and perhaps a network diagram would be even better.

Thanks for reading my post [a few times] and sorry for not being clear

The firewall has three eth ports. Currently only two are being used - one for outside (dynamically assigned IP from the ISP), one for inside (10.0.0.0/24) and now I want to configure the third port as a DMZ segment (172.16.0.0/24) and stick a FTP server on it. I'm using Dynamic DNS so I don't really need a static IP for the external interface. I want the inside network to be able to access samba services on the ftp server and I'm going to use PAT to forward the FTP port to the 172.16 address.

I hope this is a little clearer.

is the FTP server going to be accessed from the Outside as well or only from the inside segment ..?

Yes, sir. That's the idea.

Review Cisco Networking for a $25 gift card