Solved

PIX 506e - Exchange Internal - One Public IP?

Posted on 2004-04-07
3
167 Views
Last Modified: 2010-04-09
HI,
I am trying to get the following scenerio to work:
I have one IP address that the DSL carrier has povied me for the OUTSIDE interface. I need to Have all internal systems go out through this interface ( I am currently using PAT ), I also need to forward port 25 traffic that goes to the OUTSIDE interface to forward to an internal Exchange Server.

The problem that I am having is that when I enable the port 25 translation on the outside interface, I loose the ability to get to the internet from internally.

Can you have the outside interface translate this way, or do I have to get an additional IP from the carrier?
0
Comment
Question by:eheuser
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 79

Accepted Solution

by:
lrmoore earned 250 total points
ID: 10777745
Yes, you can use port redirection:
example, using inside IP 192.168.1.61 as your Exchange server:

! first, turn off fixup smtp
no fixup protocol smtp 25

! create a static port map
static (inside,outside) tcp interface 25 192.168.1.61 25 netmask 255.255.255.255

! create an access-list for inbound smtp email
access-list outside_access_in permit tcp any interface outside eq 25
OR:
access-list outside_access_in permit tcp any host (outside IP) eq 25

! apply the access-list
access-group outside_access_in in interface outside

! badabing, that's it !

0
 
LVL 79

Expert Comment

by:lrmoore
ID: 10807732
Are you still working on this? Do you need more information?
0
 

Author Comment

by:eheuser
ID: 10818283
Thanks, I am all set....
0

Featured Post

On Demand Webinar - Networking for the Cloud Era

This webinar discusses:
-Common barriers companies experience when moving to the cloud
-How SD-WAN changes the way we look at networks
-Best practices customers should employ moving forward with cloud migration
-What happens behind the scenes of SteelConnect’s one-click button

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Wikipedia defines 'Script Kiddies' in this informal way: "In hacker culture, a script kiddie, occasionally script bunny, skiddie, script kitty, script-running juvenile (SRJ), or similar, is a derogatory term used to describe those who use scripts or…
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
How to Install VMware Tools in Red Hat Enterprise Linux 6.4 (RHEL 6.4) Step-by-Step Tutorial

739 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question