Hello everybody,
Here is my office network.
NAT is activated on the PIX.
Here is the routing table of the switch. 192.168.2.0/29 is subnetted, 1 subnets C 192.168.2.0 is directly connected, GigabitEthernet0/1 192.168.1.0/24 is variably subnetted, 3 subnets C 192.168.1.64/27 is directly connected, Vlan3 C 192.168.1.32/27 is directly connected, Vlan2 C 192.168.1.160/27 is directly connected, Vlan1 192.168.3.0/29 is subnetted, 1 subnets C 192.168.3.0 is directly connected, GigabitEthernet0/2 S 192.168.4.0/24 [1/0] via 192.168.3.1 S* 0.0.0.0/0 [1/0] via 192.168.2.1
The second switch's routing table is empty. There's only a default gateway to the first switch.
Here is the routing table of the PIX. outside 0.0.0.0 0.0.0.0 XX.XX.XX.17 1 OTHER static outside XX.XX.XX.16 255.255.255.240 XX.XX.XX.18 1 CONNECT static inside 192.168.1.32 255.255.255.224 192.168.3.2 1 OTHER static inside 192.168.1.64 255.255.255.224 192.168.3.2 1 OTHER static inside 192.168.1.160 255.255.255.224 192.168.3.2 1 OTHER static inside 192.168.3.0 255.255.255.248 192.168.3.1 1 CONNECT static inside 192.168.2.0 255.255.255.248 192.168.3.2 1 OTHER static dmz 192.168.4.0 255.255.255.0 192.168.4.1 1 CONNECT static
I can ping everything from the pix.
interface on the Pix but I can ping the DMZ's hosts.
the Pix but not the dmz one nor the DMZ's hosts.
My problem is that I want the VLAN hosts reach the servers on DMZ.
Thanks for your help. If you need mor informations, don't hesitate.