I have a customer who has PIX 506E installed with one Public IP address on the Outside Interface of the PIX and another one mapped to services as shown below:
access-list outside_access_in permit icmp any any
access-list outside_access_in permit tcp any host 217.x.x.130 eq www
access-list outside_access_in permit tcp any host 217.x.x.130 eq smtp
ip address outside 217.x.x.134 255.255.255.248
This customer would like to use only one IP address both for the Outside Interface of the PIX and also for mapping to services.
Is this possible? I appreciate your suggestions.
Sure you can....
Example below.... for SMTP
access-list outside_in permit tcp any host 220.127.116.11 eq smtp
access-group outside_in in interface outside
ip address outside 18.104.22.168 255.255.255.252
static (inside,outside) tcp interface smtp smtp netmask 255.255.255.255 0 0
Save with.. wr m and also issue clear xlate
The important command is 'interface' on the static.
Hope it helps and pls rate posts.