Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Cisco ASA routing

Posted on 2012-12-26
1
Medium Priority
?
261 Views
Last Modified: 2013-03-22
I have a cisco ASA 5510 firewall.
have 3 physical interfaces on it right now

corp-192.168.15.1/24   (192.168.15.2 is corp router)
inside-192.168.5.1/24
dmz-192.168.102.1/24

we have another network between a router on the corporate network that has a network on the same address as one of our physical networks (192.168.5.x/24).  It has an SMTP server that we want a server on our DMZ network to be able to use.

when we send a request from 192.168.102.99 (DMZ network) to 192.168.5.6 (SMTP) server, it is routed to the physical interface on inside network.  

How can we override this and any requests made from 192.168.102.99 to 192.168.5.6 using port 25, get routed out the corp network instead of trying to go to the inside network by default.

was thinking a route statement and/or a static statement is what i need

route outside 192.168.5.6 255.255.255.255 192.168.15.2 1

or do need static like below

static (DMZ,outside) 192.168.5.6 192.168.5.6 netmask 255.255.255.255

or need both?

thanks
0
Comment
Question by:rkneal
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 20

Accepted Solution

by:
rauenpc earned 1500 total points
ID: 38722555
You need to pick a fake subnet, and use it for nat purposes. Make a static route on the Asa for the fake network with a next hop of the router. Configure the router with a static nat to translate a fake ip to the real ip.

Post configs if you need help accomplishing this.
0

Featured Post

Introducing the WatchGuard 420 Access Point

WatchGuard's newest access point includes an 802.11ac Wave 2 chipset, providing the fastest speeds for VoIP, video and music streaming, and large data file transfers. Additionally, enjoy the benefits of strong security as the 3rd radio delivers dedicated WIPS protection!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Imagine you have a shopping list of items you need to get at the grocery store. You have two options: A. Take one trip to the grocery store and get everything you need for the week, or B. Take multiple trips, buying an item at a time, to achieve t…
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
Do you want to know how to make a graph with Microsoft Access? First, create a query with the data for the chart. Then make a blank form and add a chart control. This video also shows how to change what data is displayed on the graph as well as form…
In this video, Percona Solution Engineer Rick Golba discuss how (and why) you implement high availability in a database environment. To discuss how Percona Consulting can help with your design and architecture needs for your database and infrastr…
Suggested Courses

721 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question