Solved

Static routes in Pix

Posted on 2009-07-09
5
224 Views
Last Modified: 2012-05-07
I see the following route in the pix configuration. It seems that a few of them are not required. Would there be any reason to have all of these routes? For example, I see this route
route inside 10.176.0.0 255.240.0.0 192.168.22.3 1
Then I have the following
route inside 10.176.0.0 255.255.254.0 192.168.22.3 1
route inside 10.177.0.0 255.255.252.0 192.168.22.3 1
route inside 10.182.0.0 255.252.0.0 192.168.22.3 1
route inside 10.188.0.0 255.252.0.0 192.168.22.3 1
Wouldn't the first route cover these?
0
Comment
Question by:Jelonet
  • 3
  • 2
5 Comments
 
LVL 6

Expert Comment

by:tgtcat69
Comment Utility
Yes

The first route would cover 10.176.0.0 - 10.191.255.255

0
 

Author Comment

by:Jelonet
Comment Utility
Exactly. I understand that part, thank you. I was wondering if there would be any reason why the other routes would be used. Since they are staic routes, someone put them in there manually and I'm just not understnading why? I didn't want to delete them if they are needed for some odd reason.
0
 
LVL 6

Expert Comment

by:tgtcat69
Comment Utility
They wouldn't be used.  The first line would encompass them.  From what I remember, once a packet finds a rule that it applies to it, it uses that rule.

0
 
LVL 6

Accepted Solution

by:
tgtcat69 earned 250 total points
Comment Utility
I guess I should clarify...some systems use a fall through method where the last rule that is found is the one that is followed...as opposed to Cisco where the first rule that's found is the one that's used
0
 

Author Closing Comment

by:Jelonet
Comment Utility
Thank you. I thought maybe I was missing something here. I know it will take the more specific route but they are all going to the same IP so...Oh well, I'm deleting them.
0

Featured Post

IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

Suggested Solutions

I recently updated from an old PIX platform to the new ASA platform.  While upgrading, I was tremendously confused about how the VPN and AnyConnect licensing works.  It turns out that the ASA has 3 different VPN licensing schemes. "site-to-site" …
Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
It is a freely distributed piece of software for such tasks as photo retouching, image composition and image authoring. It works on many operating systems, in many languages.
This tutorial demonstrates a quick way of adding group price to multiple Magento products.

728 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now