PIX 515E 7.2(1) Routing between two subnets on same wire

We have two subnets on the inside interface. The 'non native' subnet has a static route pointing to the inside interface. Routing to that subnet works when coming via VPN (clients on 'inside' subnet) but not from inside. Packet tracing says that packets are dropped by the implicit Inside Any->Any drop rule but we have an explicit Inside Any->Any permit rule before that.

Reply to
Ulf Tropp
Loading thread data ...

Update: "Enable traffic between tho hosts connected to the same interface" made packets flow until NAT Lookup. "portmap translation creation failed..."

Reply to
Ulf Tropp

Supposing the native LAN is 192.168.1.0/24 and the secondary 192.168.2.0/24 I think you need to specify something like this

nat (inside) 0 192.168.1.0/24 255.255.255.0 0 0 nat (inside) 0 192.168.2.0/24 255.255.255.0 0 0

May you tell me if, when you say "the same interface", you mean the same interface from the PIX point of view and not the physical one.

May you post the conf without any sensitive and valuable data?

Alex.

Reply to
AM

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.