04-13-2015 06:31 AM - edited 03-11-2019 10:45 PM
Hello
I am going to publish free proxy on my network , i did static nat to allow my firewall to permit public ip address to my Proxy which located on DMZ.
static (DMZ,outside) XXX.XX.XX.XXX XX.X.XXX.XX netmask 255.255.255.255
Any configuration should be applied to allow my ASA 5510 to allow proxy server get access to internet .
04-13-2015 03:26 PM
Hi Mohamed,
I have removed the public ip address details from your original post as this type of information should not be posted to the community. They are replaced with XXX.XXX.....
Thanks.
04-13-2015 08:36 PM
Not really apart from access-list.
Need to make sure that for outbound we don't have access-list on DMZ interface,where implicit deny will drop traffic. Going from higher to lower security doesn't need to have access-list to allow traffic but, if you already have one , it shouldn't deny.
For inbound traffic, yes you definitely need one.
Thanks
04-15-2015 10:09 PM
Hello
I already applied access list on DMZ , as below
ip access-list DMZ permit ip host x.x.x.x any // where x.x.x.x is the DMZ server//
Any idea
thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide