11-03-2008 03:08 PM - edited 03-11-2019 07:07 AM
Hi,
I am using 7.0 on PIX 535A and have 4 different subnets on 4 physical interfaces 10.5.2.144/28, 10.5.2.160/28, 10.5.2.176/28 and 10.5.2.129/30. These interfaces are at same security level 100, I have enabled "same-security-traffic permit inter-interface" Still the devices in these subnets cannot communicate with other. Firewall is in routed mode.
Thanks for your help.
-JK
11-03-2008 11:46 PM
Hello Jayesh,
Try this
no nat-control
Regards
11-04-2008 01:10 PM
Or, if you need NAT (because no nat-control turns off NAT globally), try defining either a NAT 0 or a nat 'NET STATIC' that NATs the address range from interface to interface.
There MUST be some NAT relationshoip between any two interfaces that wish to communicate.
11-04-2008 04:04 PM
no nat-control does not turn off NAT globally. Your nat statements will go on working. It only removes the "any traffic flow must match a NAT statement" must.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide