Re: ISA behind PIX scenario

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance

From: Phillip Windell (_at_.)
Date: 05/04/04


Date: Tue, 4 May 2004 13:19:58 -0500

Create an entirely new private IP subnet to go between the ISA and PIX.
This subnet will become a DMZ known as a "Back-to-back DMZ" design.

-- 
Phillip Windell [MCP, MVP, CCNA]
www.wandtv.com
"aly" <anonymous@discussions.microsoft.com> wrote in message
news:812201c431f8$f7f58650$a401280a@phx.gbl...
> Hello,
>
> I have an ISA server that controlls the Internet access.
> The Inside NIC has an Private IP address
> The outside NIC has an Public IP address
> I have 2 published servers; Mail and Web
>
> Now i want to implement the following situation:
>
> LAN--ISA--PIX Firewall--Router--Internet.
>
> But i am confused about the NICs configurations?
> Should i assign a private IP to the outside NIC, connect
> it to the inside interface of the pix which in his turn
> performs NATting?
> What is the recommended and most secure scenario?
> Plz help,
> thanks in advance


Relevant Pages

  • PIX dual homed for internal routing
    ... I will be using the PIX to provide VPN access and VPN access only. ... I have a single address space /28 that makes up my logical DMZ. ... Is there any way around this, shy another router between the ... I have 3 NICs on the PIX, ...
    (comp.dcom.sys.cisco)
  • Re: ISA Server inside a private network ???
    ... Effectively that is what you do with a back-to-back DMZ. ... Insert the ISA between the regular LAN and the DMZ. ... As far as the PIX is concerned the DMZ *is* the Private LAN,...it doesn't know ...
    (microsoft.public.isa)
  • Re: Delegation between .Net web app and SQL Server
    ... separate DNS name. ... So if your server is called X, ... and y.y.y.y is the IP address of the private IP addressed NIC on ... > addresses on the internal nics. ...
    (microsoft.public.sqlserver.security)
  • RE: Cluster diagnostics tool test fails
    ... At first I didn't had private NIC only for private traffic, ... > Are the Private Heartbeat NICs connected to a switch, ... Cluster diagnostics tool test fails ... Right after installation I ran ...
    (microsoft.public.windows.server.clustering)
  • Re: Change structure Question fo SBS2000
    ... You really want two nics still in the server ... Then a second one with a different private IP going to the router. ... This LAN ...
    (microsoft.public.windows.server.sbs)