We use 10.x.x.x network internally. Pix stands between two networks - 10.34.12.0/24 - outside one with security level 0 and 10.34.3.0/24 - inside one with security level 100. I need all ip's from 10.34.3.0 and 10.34.12.0 networks to pass trough firewall without any nat translation. Also network 10.34.12.0 should get access to another 10.x.x.x subnets within corporate network without any nat translations. What is the best way to achieve this?
Well you just add static statements per network, or just change the previous suggestion to:-
static (inside,outside) 10.0.0.0 10.0.0.0 netmask 255.0.0.0
static (outside,inside) 10.0.0.0 10.0.0.0 netmask 255.0.0.0
That way all networks in the 10/8 are the same passing thru the firewall.