Cisco ASA 5505 Getting Started Manual page 61

Adaptive security appliance
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Chapter 6
Scenario: DMZ Configuration
Figure 6-4
An Outside User Visits the DMZ Web Server
Inside interface
Inside
User
192.168.1.2
78-18003-02
www.example.com
Internet
Public IP Address
209.165.200.225
(outside interface)
DMZ interface
10.30.30.1
192.168.1.1
When a user on the Internet requests an HTTP page from the DMZ web server,
traffic flows through the adaptive security appliance as follows:
A user on the outside network requests a web page from the DMZ web server
1.
using the public IP address of the adaptive security appliance
(209.165.200.225, the IP address of the outside interface).
2.
The adaptive security appliance receives the packet and, because it is a new
session, verifies that the packet is allowed.
Example DMZ Network Topology
Source Address Translation
209.165.201.225
10.30.30.30
DMZ
Web Server
Private IP Address: 10.30.30.30
Public IP Address: 209.165.200.225
ASA 5505 Getting Started Guide
6-7

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents