Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 312
  • Last Modified:

New PIX question

Current Layout

Router Public Address X.X.X.X
Unprotected Switch
VSR Satellite Routing Box. Wan IP Public Address. X.X.X.X
                                      Lan Ip Address 172.30.0.100
Pix Firewall Lan Ip Address 172.30.0.3
Internal Network 172.30.X.X


Think of each of thoose lines as a box. The LAN cable of the VSR box is plugged into the 172.30.X.X network.

This is of course protected by the PIX.

a Satellite site can ping the LAN ip address of the VSR box. But nothing else on the 172.30.X.X network.

I want to configure the PIX so that anything from the satellite site whos config is

Router Public Address X.X.X.X
INternal Lan Address of 192.168.1.1

to be able to ping anything on the 172.30.X.X network and Vica Versa.

Please List command lines i will need to input in order to acheive this.
0
rabelle
Asked:
rabelle
1 Solution
 
pazmanproCommented:
From what you have described, the VSR LAN Interface goes directly into the internal network and does not pass through the PIX. The problem is routing. Your inside PCs most likely have their default gateway set as the PIX box and would therefore send any traffic that they don't have a route to through the PIX, that is, traffic destined for 192.168.1.0/24 will be sent to the PIX.

Now the PIX will not route on the same interface that traffic entered, therefore, you will need to either

1) configure a router on your internal network to route traffic to the 192.168.1.0/24 network throght the satellite box and set it as the default gateway
2) COnfigure static routes on all your pcs to tell them how to get to 192.168.1.0/24
3) configure the satelite box to do routing (if it can) and have it act as the default gateway

hope this helps.
0

Featured Post

Who's Defending Your Organization from Threats?

Protecting against advanced threats requires an IT dream team – a well-oiled machine of people and solutions working together to defend your organization. Download our resource kit today to learn more about the tools you need to build you IT Dream Team!

Tackle projects and never again get stuck behind a technical roadblock.
Join Now