I don't think this is necessarily the case. Some devices support this
kind of configuration and others do not. Cisco seems to have a
specific term for it -- 'hairpinning', and it is apparently supported
in later versions of PIX. I don't know enough about PIX specifically,
but if you google this term you'll find discussions on the subject.
Then you don't have to worry about splitting the DNS.
On Fri, Dec 12, 2008 at 6:14 PM, Chris Myers <clmmacunix_at_charter.net> wrote:
> You cannot do it conventionally. The firewall sees it as a spoofed address.
> You cannot go out to the internet and back in the same interface for a
<snip..>
_______________________________________________
firewall-wizards mailing list
firewall-wizards_at_listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
Received on Dec 29 2008