BACKGROUND: I am attempting to setup failover for a couple of pix 520s (similar to the 515) within a start-up business/mission critical network. Due to certain budgetary limitations we do not currently have any routers and are using the pix firewall with nat as a routing hack. The outside interface is assigned the host ip on a /30 (255.255.255.252) and the WAN gateway occupies the other host.
THE QUESTION: Based on my limited readings, it is my understanding that when setting up failover, the secondary pix outside interface is assigned an unused IP within the same subnet as the primary pix outside interface. Since both hosts are occupied, is my only option to purchase a router? Or is there an available hack in the meanwhile?