Hot Downloads

Welcome, Guest
Username: Password: Remember me

TOPIC: Ping from within PIX to a vitrual ip address

Ping from within PIX to a vitrual ip address 9 years 10 months ago #19269

  • zillah
  • zillah's Avatar
  • Offline
  • Frequent Member
  • Posts: 79
  • Karma: 0
I have got the pix with this configuration :

ip address outside 10.1.1.130 255.255.255.0
ip address inside 192.168.100.1 255.255.255.0
ip address dmz 192.168.101.1 255.255.255.0

static (dmz,outside) 10.1.1.203 192.168.101.203 netmask 255.255.255.255 0 0
static (dmz,outside) 10.1.1.204 192.168.101.202 netmask 255.255.255.255 0 0
static (dmz,outside) 10.1.1.132 192.168.101.221 netmask 255.255.255.255 0 0
static (inside,dmz) 192.168.101.212 192.168.2.12 netmask 255.255.255.255 0 0


All these ip addresses (192.168.101.202/203/221) in the DMZ area are dedicated for different servers in the dmz area

10.1.1.132/203/204/ are virtual (may be this not the proper name) ip addresses mapped to the DMZ area.

10.1.1.132/203/204,,,refer to the ip addresses in the outside zone

192.168.2.12 for the inside server , while 192.168.101.212 is virtual ip address in the DMZ area

From within the PIX itself, when I tried to ping (virtual ip address I could not), while I was able to ping all other ip addresses (dedicated to a device) :

FW# ping 10.1.1.203
10.1.1.203 NO response received -- 1000ms
10.1.1.203 NO response received -- 1000ms
10.1.1.203 NO response received -- 1000ms

FW# ping 10.1.1.204
10.1.1.204 NO response received -- 1000ms
10.1.1.204 NO response received -- 1000ms
10.1.1.204 NO response received -- 1000ms

FW# ping 10.1.1.132
10.1.1.132 NO response received -- 1000ms
10.1.1.132 NO response received -- 1000ms
10.1.1.132 NO response received -- 1000ms

FW# ping 192.168.101.203
ip address for on of the DMZ server
192.168.101.203 response received -- 0ms
192.168.101.203 response received -- 0ms
192.168.101.203 response received -- 0ms

FW# ping 192.168.100.1
ip address for inside interface itself
192.168.100.1 response received -- 0ms
192.168.100.1 response received -- 0ms
192.168.100.1 response received -- 0ms

FW# ping 10.1.1.130
ip address for outside interface itself
10.1.1.130 response received -- 0ms
10.1.1.130 response received -- 0ms
10.1.1.130 response received -- 0ms

FW# ping 192.168.2.12
ip address for inside server
192.168.2.12 response received -- 0ms
192.168.2.12 response received -- 0ms
192.168.2.12 response received -- 0ms


FW# ping 192.168.101.212
virtual ip (may be this is not the proper name)address for DMZ area
192.168.101.212 NO response received -- 1000ms
192.168.101.212 NO response received -- 1000ms
192.168.101.212 NO response received -- 1000ms
The administrator has disabled public write access.
Time to create page: 0.075 seconds

CCENT/CCNA

Cisco Routers

  • SSL WebVPN
  • Securing Routers
  • Policy Based Routing
  • Router on-a-Stick

VPN Security

  • Understand DMVPN
  • GRE/IPSec Configuration
  • Site-to-Site IPSec VPN
  • IPSec Modes

Cisco Help

  • VPN Client Windows 8
  • VPN Client Windows 7
  • CCP Display Problem
  • Cisco Support App.

Windows 2012

  • New Features
  • Licensing
  • Hyper-V / VDI
  • Install Hyper-V

Linux

  • File Permissions
  • Webmin
  • Groups - Users
  • Samba Setup