DMZ hosts to internet & inside require two NIC's, or can this be done by NAT? 250 POINTS
Posted on 2006-04-27
I have an network with 1 pix with an outside interface, a dmz interface which the internet can access with public addresses, lets just say 195.XXX & an inside 10.XXX network.
I want the DMZ hosts to be able to contact hosts on my inside network as well as the internet. how can this be done?
Is the only way to do this by having two lots of nics on the hosts, one with public addresses 195XXX that route to the internet & one with lets say 172.16.X.X for my dmz hosts so they can go inside, or can my dmz hosts get to the inside without having to nat their 195.XXX addresses?
If this can be done by nat & route could someone show example nat & route statements?
thanks in advance