Cisco router in between Pix and Switch - routing needed?

Posted on 2008-10-21
Last Modified: 2012-05-05
I Have a Cisco 2621 router that I am going to place in between my Switch and my PIX-501 to collect and export netflow. I really just want it to collect the Netflow and pass on the traffic to the pix. What commands would I need to use to do this (if any)
here is the format of the connection Legend (inside ip-[hardware]-outside ip)
Desired Setup

I already have the config of the 2621 setup this way and I'm going to test it tonight after hours but I wanted to find out before if I need any other routes to make the passthrough happen.

Also does there need to be any other changes to the PIX other than changing the inside IP? It is the gateway for the LAN. So with the desired setup the Gateway would be changed to the 2621 and traffic would be passed to the pix I guess.
Question by:Bill Warren
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
LVL 43

Expert Comment

ID: 22768550
The 3560 needs a default route via (the 2621) and the 2621 needs a default route via (PIX).  The PIX needs a route to via (2621) and the 3560 a route to via (2621).  That should do it these are your only subnets.

Author Comment

by:Bill Warren
ID: 22768686
Sorry I don't have a ton of knowledge on the routes. if it's not too much trouble could you tell me  the commands that I woul d need to add per device? I am into the devices and know how to add them but I'n not sure on the connamds that need to be added.
LVL 43

Accepted Solution

JFrederick29 earned 500 total points
ID: 22768709


conf t
ip route
ip route


conf t
ip route


conf t
route outside x.x.x.x   <--to your ISP (should already be there so no need to add)
route inside
Connect further...control easier

With the ATEN CE624, you can now enjoy a high-quality visual experience powered by HDBaseT technology and the convenience of a single Cat6 cable to transmit uncompressed video with zero latency and multi-streaming for dual-view applications where remote access is required.


Author Comment

by:Bill Warren
ID: 22769039
on the pix when I try the command I get

pixfirewall(config)# ip route route inside
Not enough arguments.
Usage:  [no] ip address <if_name> <ip_address> [<mask>]
        [no] ip address <if_name> <ip_address> <mask> pppoe [setroute]
        [no] ip address <if_name> dhcp [setroute] [retry <retry_cnt>]
        [no] ip address <if_name> pppoe [setroute]
        ip local pool <poolname> <ip1>[-<ip2>] [mask <mask>]
        ip verify reverse-path interface <if_name>
        ip audit {info|attack} action [alarm] [drop] [reset]
        ip audit name <audit_name> {info|attack} [action [alarm] [drop] [reset]]

        ip audit interface <if_name> <audit_name>
        ip audit signature <sig_number> disable
        show|clear ip audit count [global] [interface <interface>]
        show ip [address [<if_name> [pppoe|dhcp [lease|server]]]]
Does the "ip route" work on the pix-501?
LVL 43

Expert Comment

ID: 22769050
Drop the "ip route" portion.  It's just:

route inside

Author Closing Comment

by:Bill Warren
ID: 31508354
Thanks a ton!

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Creating an OSPF network that automatically (dynamically) reroutes network traffic over other connections to prevent network downtime.
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

751 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question