|
Chadwick24 -> ISA as a gateway behind a gateway? (27.Jun.2008 4:44:19 PM)
|
Hi, I am having trouble implimenting ISA as a backend firewall. I have a Cisco PIX that uses NAT to translate out external IPs to the internal DMZ between the ISA external interface and the PIX internal interface. However, untill the web server is rebuilt all websites are on a server behind the ISA. they are not working well. We have 3 External IP's that need to translate or map to the WebSites behind the ISA, each with its own internal IP address. the problem is that PIX is routing from external to three addresses in the DMZ between the PIX and ISA. no how wouls I reroute them from the ISA's external int to its Internal int. The idea is this. External IPs => PIX => translated to 192.168.3.178, 192.168.3.174, 192.168.3.172 => ISA => translated to 192.168.1.178 etc. I have it working... somewhat. I can send and receive e-mail. but all the sent email is leaving the pix as the wrong IP. it is leaving as the Websites IP. in fact everything leaves as the websites IP. I set up publishe servers on ISA and gave the proper IP addresses. I think the problem is when things are leaving they are not translating back to their proper 192.168.3.0 address. they must all be going back to the same ip in the DMZ and then out to the same external IP on the PIX. I'm at a loss with how to configure the ISA as a gateway. what do I set in routing and remote access? Thanks
|
|
|
|