Routing problem

I have added a router to my network (10.10.0.0/16). This router has an interface into 10.10 and another one in 192.168. All users in 10.10 use a PIX 515 to access to Internet. PIX has an interface in 10.10. network. Users from 192. 168 can access resources in 10.10 network but cannot go to Internet.

here is the info:

user:

192.168.1.99 DG: 192.168.1.254 Router

Router: No Nat, no Global DG: 10.10.6.254 Inside Interface of PIX

Does anyone know how to solve this problem and give users on 192.168 access to Internet thru PIX box.

Thanks for any help in advance.Rob

Reply to
Rob
Loading thread data ...

Is the PIX NATing for the 192.168.1.0 subnet? Does it have a route back to the router for it as well?

Steve

formatting link

Reply to
www.networking-forum.com

On 01.05.2006 01:24 Rob wrote

You have to tell the PIX to route 192.168.1.0/24 via 10.10.6.254

Reply to
Arnold Nipper

On PIX I have: nat (inside) 1 0.0.0.0 0.0.0.0 0 0 Does it mean that I already have nating for 192.168 network. (Inside PIX is

10.10.) Rob
Reply to
Rob

On 01.05.2006 15:23 Rob wrote

with 0/0 (aka 0.0.0.0 0.0.0.0 0) you already nat *everything* from inside. Hence also 192.168.1.0/24.

Of course you should also set default on the router to point to the

10.10.0.0/16 address of the pix.

Arnold

Reply to
Arnold Nipper

yes, I have the default route on Router to point to the PIX inside interface. ip route 0.0.0.0 0.0.0.0 10.10.6.254 But stil doesnt work, I even cannot ping PIX inside from 192.168 network, I am able to ping all other machines inside 10.10. network from 192.168. Any idea? Rob

Reply to
Rob

Show us the routing table on the PIX. If your 192 net can ping 10 stuff, then it sounds like the pix doesnt know how to get back to the

192.

See Arnold's comment above. Rob wrote:

Reply to
Dark

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.