PIX 506e static nat for services
Posted on 2004-10-26
I have a linux box in my dmz that I am trying to allow access to the web server in my private network. I added the following to my PIX to allow a static nat
My pix outside interface is 172.16.0.9, inside 10.0.0.2
static (inside,outside) 172.16.0.10 10.0.0.10 netmask 255.255.255.255 0 0
access-list outside_access_in permit tcp any host 172.16.0.10 eq www
The linux box IP is 172.16.0.14 on the same network as the pix outside interface. But when I try and connect using the 172.16.0.10 address I receive a 'no route to host' error.
The route table of the linux box is
172.16.0.0 * 255.255.254.0 U 0 0 0 eth0
loopback gentoo 255.0.0.0 UG 0 0 0 lo
default 172.16.0.2 0.0.0.0 UG 0 0 0 eth0
So why am I getting this error?