cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
290
Views
0
Helpful
1
Replies

inside to dmz access or domain based access

ramesh.krishnan
Level 1
Level 1

i have a cisco pix 525with a inside and dmz interface. there are 2 mail servers. one mail server is on the dmz interface and the other is in the inside interface. i have applied alias command for local resolution.but now when i try to ping the dmz servers with the domain name or public ip of that server its not responding. with the internal IP, its possible.im using conduits, not access-lists.i have heard that this trust is possible but im not so sure abt that and also i want to know whether i can use a combination of conduit with access-lists.

can anyone guide me for the same.

thanks in advance.

ramesh

1 Reply 1

ehirsel
Level 6
Level 6

Try this test: telnet dmz-mail-server-name 25

where dmz-mail-server-name is the hostname - and then do the same with the public ip address. Let me know if you get a telnet connection on port 25, you should see the smtp or esmtp banner screen. If you get the banner, then the issue is the acls and/or conduits with respect to icmp.

Let me know how the tests go.