Hi,
When using interface NAT, the source Interface must be in the Trust. When binding the source to the DMZ, you must specify the NAT using Policy. Because of this limitation, I typically use Route mode for all interfaces and simply NAT via policy as needed.
I hope this helps.
-John