cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
377
Views
0
Helpful
1
Replies

1841 Firewall with DMZ

shawn
Level 1
Level 1

I have a 1841 currently configured for firewall and NAT. I have a HWIC-4ESW module installed. What I would like to do is configure one of the ports on the module as a DMZ for a mail server. How would I best go about this? Thanks.

Cisco IOS Software, 1841 Software (C1841-ADVSECURITYK9-M), Version 12.4(3a), REL

EASE SOFTWARE (fc2)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2005 by Cisco Systems, Inc.

Compiled Thu 29-Sep-05 19:12 by hqluong

ROM: System Bootstrap, Version 12.3(8r)T8, RELEASE SOFTWARE (fc1)

ADMrt02 uptime is 5 weeks, 4 days, 16 hours, 3 minutes

System returned to ROM by power-on

System restarted at 20:53:05 MDT Thu Aug 17 2006

System image file is "flash:c1841-advsecurityk9-mz.124-3a.bin"

This product contains cryptographic features and is subject to United

States and local country laws governing import, export, transfer and

use. Delivery of Cisco cryptographic products does not imply

third-party authority to import, export, distribute or use encryption.

Importers, exporters, distributors and users are responsible for

compliance with U.S. and local country laws. By using this product you

agree to comply with applicable laws and regulations. If you are unable

to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:

http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to

export@cisco.com.

Cisco 1841 (revision 5.0) with 234496K/27648K bytes of memory.

Processor board ID FTX0949Y16X

6 FastEthernet interfaces

1 Virtual Private Network (VPN) Module

DRAM configuration is 64 bits wide with parity disabled.

191K bytes of NVRAM.

62720K bytes of ATA CompactFlash (Read/Write)

1 Reply 1

thomas.chen
Level 6
Level 6

Add securtiy bundle to 1841 which can be done by adding PIX.CBAC allows external traffic to access the services in the Demilitarized Zone (DMZ), but prevents specified protocol traffic from entering your internal network unless the traffic is part of a session initiated from within the internal network.Refer the URL for more informationhttp://www.cisco.com/en/US/partner/products/sw/iosswrel/ps1835/products_configuration_guide_chapter09186a00800ca7c5.html#wp1002187