Hi, I have a 515e pix and I need to configure a pool address in my external interface. I have 5 ip addresses of isp provider. I use the ASDM software.
Simply create a new pool ID in your firewall.
If your ISP gave you a /28 you then have 6 addresses , you loose one for PIX outside interface.
say you have 10.20.20.0/28
You can use outside to PAT, you will see similar scenario as:
your PIX outside interface IP is 10.20.20.1/28
global (outside) 1 interface
nat (inside) 1 0 0 (this Will pat anything inside againts your oustside global interface ip)
then crteate a POOL ID , say we use POOL ID 2 , and use remaining public IPs for that pool.
global (outside) 2 10.20.20.2-10.20.20.6
you may difine specific inside subnet to use pool 2 instead of PAT
say you have inside segments as 172.16.1.0/24 , 10.3.4.0/24 and want to have these subnets use your Pool ID 2.
nat (inside ) 2 172.16.1.0 255.255.255.0
nat (inside) 2 10.3.4.0 255.255.255.0
everything else inside will use PAT via global (outside) 1 interface