Policy based routing in PIX.

Unanswered Question
Jan 27th, 2010

Hi all,

how it is possible route some traffic in PIX based on source and destionation IPs somewhere I decide?

BR

gg

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Kureli Sankar Wed, 01/27/2010 - 06:17

No. Unfortunately PBR is not supported on the PIX/ASA/FWSM platforms.

You need to use a router.

-KS

gabrielgr Thu, 01/28/2010 - 04:01

Any idea how to route traffic coming from VPN to PIX (going out of VPN) back to Internet?

So I will see traffic in Internet like our public IP address.

BR

gg

Kureli Sankar Thu, 01/28/2010 - 05:23

You mean connect to the PIX from home via VPN and use the PIX to go out to the internet?

nat (outside) 2 192.168.1.0 255.255.255.0 ---> This is the pool that the VPN folks get for IP address.

global (outisde) 2 interface

same-security-traffic permit intra-interface

-KS

gabrielgr Fri, 01/29/2010 - 00:51

Thanks.

Yes, thats what we want to achieve. We need to send some specific traffic going out in PIX from VPN to send it to Internet not to our local

network. So as I understand we can do it with only commands you send me.

BR

gg

Actions

This Discussion