Networking

4

 

Configuring DMZ

 

 

 

 

 

Figure 1 Example DMZ with One Public IP Address for WAN and DMZ

www.example.com

Internet

 

 

 

Source Address Translation

Public IP Address

209.165.200.225

172.16.2.30

209.165.200.225

 

 

 

DMZ Interface

 

ISA500

172.16.2.1

 

 

 

LAN Interface

Web Server

 

Private IP Address: 172.16.2.30

 

192.168.75.1

 

Public IP Address: 209.165.200.225

 

 

 

User

User

192.168.75.10

192.168.75.11

283049

In this scenario, the business has one public IP address, 209.165.200.225, which is used for both the security appliance’s public IP address and the web server’s public IP address. The administrator configures the configurable port to be used as a DMZ port. A firewall rule allows inbound HTTP traffic to the web server at

172.16.2.30.Internet users enter the domain name that is associated with the IP address 209.165.200.225 and can then connect to the web server. The same IP address is used for the WAN interface.

Cisco ISA500 Series Integrated Security Appliances Administration Guide

142

Page 142
Image 142
Casio ISA550WBUN3K9 manual Example DMZ with One Public IP Address for WAN and DMZ