burtsbees,
I don't care which IP address is accessible from inside. The problem is that, when hitting the named address from inside, the response comes from the DMZ address instead of being translated back to the outside address. We would like to just do split-DNS but are not sure if that will...