No Route to Outside from DMZ

Posted on 2008-11-05
Last Modified: 2008-11-12
Hiya People...

Right, I have a Load Balancer which I need to NAT Straight through to the DMZ which sits on a PIX 515e.

even when I allow NAT Straight through to the DMZ the packets get there but it looks like they don't get back.

I get a NO Route to OutsideIP from DMZ Server IP (

the network is as follows...
External Routers - and
External Load Balancer - ExternalIPs eg and
PIX Outside IP -
PIX dmz int IP -
DMZ webserver -

The machine in the DMZ can access webpages and has good internet access.

The pix has a static route which i - straight out of the External Router...

anybody have any hints please?

Question by:chesterzoo
    LVL 32

    Accepted Solution

    Do you have all the nat statements with supplementing acl's in place? It should look something like this;

    static (inside,outside) 192.168.30.x netmask

    access-list <something> permit tcp any host eq http

    access-group in interface outside

    Post the config if you have any further questions.

    LVL 2

    Author Comment

    yes ive got all the ACL's in place...

    ill grab the config in a bit...


    Featured Post

    IT, Stop Being Called Into Every Meeting

    Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

    Join & Write a Comment

    Have you experienced traffic destined through a Cisco ASA firewall disappears and you do not know if the traffic stops in the firewall or somewhere else? The solution is the capture feature. This feature was released in 6.2(1) and works in all firew…
    Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
    Here's a very brief overview of the methods PRTG Network Monitor ( offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
    In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor ( If you're interested in additional methods for monitoring bandwidt…

    746 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    14 Experts available now in Live!

    Get 1:1 Help Now