I'm new to the firewall world and I'm trying to configure our new PIX. The layout looks as follows:
internet------router (e0) 126.96.36.199/29-----PIX (outside) 188.8.131.52/29
(inside) 10.100.0.100 (dmz) 184.108.40.206/29
[private network] [web server]
The web server will need to communicate to the private network as well as from the internet.
I have a pool of addresses for NAT'ing the private addresses: 220.127.116.11 - 214 and 18.104.22.168 - 142
I'd prefer to perform static NAT because i'm running h323 (video conferencing)
With my initial attempt at this, I'm ABLE to ping from the PIX thru all interfaces. I'm unable to ping the web server from the internet as well as unable to ping from the web server out to a public address on the internet. I fear I'm blocking ICMP from both directions. I'm also unable to ping the web server from my private network. Since this is a web server HTTP fails as well.
Can someone please help in guide me in the right direction by providing a config?