This should be straight forward, but for some reason I'm missing something. I have a PIX with 6 interface
The Guest interface is the guest VLAN for the company and I want to allow access to the Internet while blocking all of our internal stuff. Sample config is here:
ip add 126.96.36.199 255.255.255.0
ip add 10.10.10.1 255.255.255.0
ip add 172.16.1.1 255.255.255.0
security level 50
ip add 192.168.1.1 255.255.255.0
security level 90
nat (inside) 1 0 0
nat (Guest) 2 0 0
global (outside) 1 188.8.131.52
global (outside) 2 184.108.40.206
access-list Guest_out permit ip any any
access-gr Guest_out in interface guest
Based on the config above, that should be enough to have the Guest vlan traffic PAT to 220.127.116.11 and have no issue going out?
Am I missing something?