cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
220
Views
0
Helpful
1
Replies

possible Xlate problem?

tmcmillion
Level 1
Level 1

I am troubleshooting a socket closed problem between a windows nt server in my dmz that frontends access to an as400 that sits inside. My question is about the behavior of some translations on the firewall. When I 'sh xlate', I have a global and local entry with the same address. Is this normal? I have provided the output for sh xlate for this device, the question is on the second entry.

Global orderpowergw Local orderpowerin

Global orderpowerin Local orderpowerin

orderpowergw is the dmz address and orderpower in is inside.

Thank You in advance for your input.

1 Reply 1

ehirsel
Level 6
Level 6

It is normal to see multiple xlate entries for the same ip address, when you have a static (dmz,outside) entry for the dmz host and that same host can initiate inbound connections to inside devices - which is what your win nt server does to the as400. One xlate is for dmz-to-outside and the other is for dmz-to-inside.

I hope this helps.