8-3
Cisco ASA 5500 Series Getting Started Guide
78-19186-01
Chapter 8 Scenario: DMZ Configuration
Example DMZ Network Topology
This section includes the following topics:
• An Inside User Visits a Web Server on the Internet, page 8-3
• An Internet User Visits the DMZ Web Server, page 8-4
• An Inside User Visits the DMZ Web Server, page 8-6
An Inside User Visits a Web Server on the Internet
Figure 8-2 shows the traffic flow through the adaptive security appliance when an
inside user requests an HTTP page from a web server on the Internet.
Figure 8-2 An Inside User Visits an Internet Web Server
User
192.168.1.2
Inside
DMZ
191799
www.example.com
Internet
Public IP Address
209.165.200.225
(outside interface)
Inside interface
192.168.1.1
DMZ interface
10.30.30.1
Web Server
Private IP Address: 10.30.30.30
Public IP Address: 209.165.200.225
Source Address Translation
209.165.200.225192.168.1.2