Thanks for your input guy's ... I found a Switch in the DMZ that had an IP default-gateway, pointing to a Novell box with an interface on both the Inside and DMZ LAN's ...
As soon as I changed the IP def-gateway I could telnet around the DMZ switches and routers .. Regards Paul ... ----- Original Message ----- From: "Paul" To: Sent: Saturday, October 12, 2002 1:14 PM Subject: PIX .. Basic Inside to DMZ Question ... [7:55447] > Hi, > > I have the DMZ as security 50, and the Inside as security 100. I have an > access-list applied to the DMZ and the Inside for permit IP any any. > > My problem is that I cannot Telnet to any routers/switches on the DMZ from > the > Inside LAN. Ping and Traceroute work !!! (ICMP permit inside/dmz any). > > How can I get round this ??? Am I missing something real basic here ??? > I can't trash the PIX and start over as I have regular VPN, NAT and Global > traffic.... > > Any input welcome .. > > Kind regards .. > > Paul ... Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=55449&t=55447 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

