tiersten wrote: » The other method is to do a hairpin on the firewall but I wouldn't call it easier...
nosmircbb wrote: » first I would recommend like everyone else that you have an internal DNS server resolving to the internal IP. after that I would say you might create another network/DMZ off the pix. i would assume that by doing this you would not have the hair pinning (in and out same interface) issue which from my understanding can be a whipping to deal with.