PIX is sitting on the network external perimeter. and to it the "OUTSIDE" interface to internet, "DMZ" to DMZ, "inside" to the astaro device "outside astaro" interface.
on the "inside" the servers see the "inside astaro" interface.
On pix i defined routes for servers vlan that point to the outside interface of the astaro.
On pix i defined nat (inside, outside) to let any requests for VPN and email public IP address be routed to astaro outside.
The astaro inside interface is on the same subnet as my servers.
In case the astaro machine went offline, will PIX be able to redirect traffic even if the ACLs, the routing and the Natting use the astaro two interfaces. Will PIX act like the ACLs, routes and natting defined for astaro interfaces do not exist or will it fail.
A bit complex.. In case you need clarification please do ask.