Static routes in Pix

Posted on 2009-07-09
Last Modified: 2012-05-07
I see the following route in the pix configuration. It seems that a few of them are not required. Would there be any reason to have all of these routes? For example, I see this route
route inside 1
Then I have the following
route inside 1
route inside 1
route inside 1
route inside 1
Wouldn't the first route cover these?
Question by:Jelonet
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2

Expert Comment

ID: 24813591

The first route would cover -


Author Comment

ID: 24813873
Exactly. I understand that part, thank you. I was wondering if there would be any reason why the other routes would be used. Since they are staic routes, someone put them in there manually and I'm just not understnading why? I didn't want to delete them if they are needed for some odd reason.

Expert Comment

ID: 24813903
They wouldn't be used.  The first line would encompass them.  From what I remember, once a packet finds a rule that it applies to it, it uses that rule.


Accepted Solution

tgtcat69 earned 250 total points
ID: 24813920
I guess I should clarify...some systems use a fall through method where the last rule that is found is the one that is opposed to Cisco where the first rule that's found is the one that's used

Author Closing Comment

ID: 31601579
Thank you. I thought maybe I was missing something here. I know it will take the more specific route but they are all going to the same IP so...Oh well, I'm deleting them.

Featured Post

Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco vWLC DHCP issues 36 135
Help creating a custom privilege level in a Cisco switch or router 3 63
SSH setup on ASA 5505 17 116
Cisco AnyConnect VPN 4 39
If you have an ASA5510 then this sort of thing would be better handled with a CSC Module, however on an ASA5505 thats not an option, and if you want to throw in a quick solution to stop your staff going to facebook during work time, then this is the…
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

737 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question