Securing Your Business with Cisco ASA and PIX Firewalls

In Chapter 5, you used the ASDM Startup Wizard to securely connect a private network to the Internet. This topology allowed users to browse the Internet. As well, it did not allow any connectivity sourced from the Internet to the inside of the private network.

In this chapter, you build on that topology by adding a web or mail server to that private network.

First, take a look at Figure 6-1 for a quick review of the network you created in Chapter 5.

Figure 6-1. Basic Network-to-Internet Topology

This figure shows the ASA/PIX Security Appliance relative to both the Internet and the private inside network of your topology. It includes current IP addressing. Table 6-1 shows the full addressing scheme and network elements configured in Chapter 5.

Table 6-1. Networking Terminology

Network Entity

Value

Subnet Mask

Inside IP address

192.168.1.1

255.255.255.0

Outside IP address

199.199.199.199

255.255.255.0

Default gateway

199.199.199.254

255.255.255.0

Domain name

example.com

n/a

NAT address pool

199.199.199.199 (Outside Interface)

n/a

Inside addressing (DHCP)

192.168.1.100 through 192.168.1.200

255.255.255.0

Категории