Solved

Cisco PIX 501: Ouside/Inside on same subnet?

Posted on 2006-11-08
5
341 Views
Last Modified: 2013-11-16
All,

Is it possible to have an outside IP of 192.168.1.100/24 and an inside IP of 192.168.1.101/24?

I am securing a network segment and I want to do this so that all PCs outside the firewall have 192.168.1.2-99/24 and all PC's on the inside have 192.168.1.102-199/24 and I can restrict the traffic between the two segments.

All IP's on my network are static and I will not be using the PIX's DHCP feature on the inside.

Thanks!

Mike
0
Comment
Question by:jbisordi
  • 4
5 Comments
 
LVL 57

Accepted Solution

by:
Pete Long earned 250 total points
ID: 17901239
No but you can use

192.168.1.0 / 25 (thats 255.255.255.128)

then subnet 1 would b

192.168.1.1 to 126

and subnet 2 would be

192.168.1.129 to 254

0
 
LVL 57

Expert Comment

by:Pete Long
ID: 17901326
Network address        Subnet                      Subnet Size             Usable IPs                                   Broadcast address
192.168.1.0      255.255.255.128      126                    192.168.1.1  to  192.168.1.126      192.168.1.127
192.168.1.128      255.255.255.128      126                    192.168.1.129  to  192.168.1.254      192.168.1.255
0
 
LVL 57

Expert Comment

by:Pete Long
ID: 17901331
^^^^^^^^formatting screwed up but you get the picture
0
 

Author Comment

by:jbisordi
ID: 17901393
Thanks for the info Pete.

So just to be clear: it is not possible to place my 501 between two networks that use the same subnet, even if the IP's on the interfaces and the clients on each site are all unique...is that correct?
0
 
LVL 57

Expert Comment

by:Pete Long
ID: 17901701
Thats correct yes  
0

Featured Post

Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Auto Voice Respond from Pilot no from UC560 1 54
ASA DHCP setup 5 38
Help with a subnetting question 7 58
Configuring WAN interface on Cisco ASA5525 3 25
When I upgraded my ASA 8.2 to 8.3, I realized that my nonat statement was failing!   The log showed the following error:     %ASA-5-305013: Asymmetric NAT rules matched for forward and reverse flows It was caused by the config upgrade, because t…
To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…

790 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question