R: [fw-wiz] pix 501 as bridge firewall. Possible?
From: edp (edp.lists_at_acerbis.it)
Date: 08/18/03
- Previous message: Bennett Todd: "Re: [fw-wiz] worm + VPN + firewall"
- In reply to: Paul Matuszewski: "[fw-wiz] pix 501 as bridge firewall. Possible?"
- Next in thread: Hoang, Binh P,,DMDCWEST: "RE: [fw-wiz] pix 501 as bridge firewall. Possible?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: "'Paul Matuszewski'" <sase@five-elements.com> Date: Mon, 18 Aug 2003 15:52:53 +0200
Of course, is a quite common scenario, you have to investigate the "nat
0 access-list" / nat bypass characteristic of that appliance (remember
that pix NAT packets by default). Read the associated command
explanation on cisco references:
http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_sw/v_63/cm
dref/mr.htm#1032129
-----Messaggio originale-----
Da: Paul Matuszewski [mailto:sase@five-elements.com]
Inviato: luned́ 18 agosto 2003 8.37
A: firewall-wizards@honor.icsalabs.com
Oggetto: [fw-wiz] pix 501 as bridge firewall. Possible?
Hey all,
I've used Pix's as NAT'ing firewalls specifying different address pools
on
different interfaces on 10k situations.. works flawlessly. However,
whenever I am doing any kind of situation where I need the internal
network
has public IP space.. I use packet filtering on a router.
So my question is as follows, is the following situation possible:
OUTSIDE: 192.168.1.0/24
INSIDE: 192.168.2.0/24
Outside network communicates directly with inside IP's and vica versa
with
NO natting.
Is that possible? or am I missing something here?
Thanks.
---------------------------
Paul Matuszewski
Systems Administration
In Office Networks
http://www.inofficenetworks.com
V:(516) 816-4871
V:(305) 799-4871
F:(305) 441-2804
_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
- Previous message: Bennett Todd: "Re: [fw-wiz] worm + VPN + firewall"
- In reply to: Paul Matuszewski: "[fw-wiz] pix 501 as bridge firewall. Possible?"
- Next in thread: Hoang, Binh P,,DMDCWEST: "RE: [fw-wiz] pix 501 as bridge firewall. Possible?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|