PIX & Global Address Pools

Hi I have a PIX in my network. It is used to pass HTTP & HTTPS traffic thru to a Proxy server in the DMZ (running Squid) for Internet access. My understanding is that the Global Address Pool is used to perform NAT on the inside interfaces I am finding that the pool of addresses is insufficient for the amount of users I have on the inside. I have about 500+ users on various subnets on the inside but my pool for the DMZ is

192.168.1.20-192.168.1.254 The translation rule on the inside is Original inside:any / 0.0.0.0 Translated dmz1 192.168.1.20-192.168.1.254

Is there any way to increase this or is there a better way to handle this within the PIX?

Cheers, Scott

read more and respond »

Posted 5 years ago by Scooty in Cisco Systems

Report misuse

Image for PIX & Global Address Pools