Multiple public IP behing PIX 501

Hello all

I was reading many posts but I`m still not sure if I can do below situation on PIX 501:

ISP (public IP 62.bbb.xxx.yyy/30) PIX501 (14 x public IP

62.aaa.zzz.vvv/28)

62.bbb.xxx.yyy/30

Reply to
Kuba
Loading thread data ...

Yes, it is possible.

Reply to
Lutz Donnerhacke

Yes, that is not a problem. Do note, though, that the PIX itself will be at 62.bbb.xxx.yyy/30 for the purposes of traffic that terminates on the PIX itself. For example if you have a VPN connection, the VPN peer will need to use the actual outside IP address: you cannot tell the PIX 501 [1] to accept VPN connections on one of the inside addresses. [2] [3]

[1] there is a vlan trick that might work in some instances on most

-other- PIX 5xx models, but not the 501. [2] with the exception of a VPN connection used to talk only to the PIX itself and not to inside" [3] PIX 7.0 might have different restrictions, but PIX 7.0 does not run on the PIX 501.

Reply to
Walter Roberson

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.