I would really appreciate any help on this topic. I have the following situation:
NetA (192.168.0.0/24) | | 192.168.0.1/24 PIX1 | 10.0.0.1/24 | Internet | | 10.0.5.1/24 PIX2 | 192.168.1.1/24 | NetB (192.168.1.0/24) | (other infrastructure) | NetC (192.168.2.0/24)
PIX1 can reach NetA, PIX2 can reach NetB, NetC. I have a IPSec VPN between PIX1 and PIX2 with NetA and NetB being internal subnets that talk to each-other, respectively. It works fine, I can ping computers in NetB from NetA and vice-versa, I can share files, etc.
Is it possible to configure the PIX1 so it routes packages destined to NetC over VPN? For example, if I would ping 192.168.2.10 from
192.168.0.50, it should go through PIX1, VPN tunnel, PIX2 and route however it needs to NetC, then back the same way. Since PIX2 can ping NetC computers, there should be no worries about the routing on the PIX2 side.