Hi All;
I Hope somebody can share some light on this problem i have created.
I am using PIX515 6.3.5
I have developed an application that sits on the Salesman laptops, it is based on apache web server at port 80.
My idea is that the user connects to the corporate network via PPTP and makes the data of his application available to other users, basically is this:
WINXP_LAPTOP<-->PPTP_VPN<-->PIX INT_0<-->INTRANET WITH DMZ QUERY<-->INT_1<-->WEB
Laptop user VPNs into the Interface 0 of the PIX, the main server is on the DMZ on the interface 2, the server processes the info and makes it avalilable via Interface 1.
I have tried all sorts of config, even bought another firewall but no chance. My biggest issue is that the pix does not allow 2 interfaces to share the same network space.
I think i need an ethernet router to sit in front of the two outside ports of the PIX to route traffic between the two interfaces.
i know it sounds confusing, but i have been cracking head for a week now.
This link shows a diagram of what i am trying to achieve.
Thanks for your help
Lucio
I Hope somebody can share some light on this problem i have created.
I am using PIX515 6.3.5
I have developed an application that sits on the Salesman laptops, it is based on apache web server at port 80.
My idea is that the user connects to the corporate network via PPTP and makes the data of his application available to other users, basically is this:
WINXP_LAPTOP<-->PPTP_VPN<-->PIX INT_0<-->INTRANET WITH DMZ QUERY<-->INT_1<-->WEB
Laptop user VPNs into the Interface 0 of the PIX, the main server is on the DMZ on the interface 2, the server processes the info and makes it avalilable via Interface 1.
I have tried all sorts of config, even bought another firewall but no chance. My biggest issue is that the pix does not allow 2 interfaces to share the same network space.
I think i need an ethernet router to sit in front of the two outside ports of the PIX to route traffic between the two interfaces.
i know it sounds confusing, but i have been cracking head for a week now.
This link shows a diagram of what i am trying to achieve.
Thanks for your help
Lucio