02-23-2008 02:59 AM - edited 03-11-2019 05:07 AM
Hi,
ISP--R1--Firewall--R2--R3--Pc(webserver)
ISP is terminated in the R1 router.To provide internet for users, Dynamic NATing are given in the rotuer(R1) level itself.R1 F0 ip is primary public ip and Secondary ip is private ip which is terminated in the Firewall interface(Private ip)..Now i need to privide Static Nat for my webserver.Is it possible to do it in Firewall..I think we can't....i have to do only in the router..
02-27-2008 04:20 AM
Hi,
Yes..I can...Is there any issues with the routes in router R1 and R2..
02-27-2008 04:28 AM
hey Suresh..the connection detail TCP out 123.176.41.235:4579 in 172.24.248.178:443 idle 0:01:14 Bytes 0 flags SaAB, clearly indicate that there was no return synack on the firewall back from web server, so either the issue is on WEBSERVER or R2 or R2
Now from WEBserver are you able to ping 4.2.2.2 through the firewall ? do you see these ICMPs request and replies in debug icmp trace ?
I don't see a DG on R2..??how would R2 know where to send the return packet ...
02-29-2008 02:41 AM
Hi,
After once added route in R2..we got the connectivity...Thanks for ur support..
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide