We are planning to replace our (50 user) PIX501 with an ASA5505. However, the ASA5505 is constrained and will be not be available until June. Main reason for the change is there is no VPN client for new windows7 computers.
I have my own 10 user ASA5505, and am wondering if I can use it to handle VPN for the new machines until the 50 user ASA arrives.
We have several public IP's available. Currently the PIX uses 1 public IP to handle traffic for the internal network. A second public IP is routed directly to a server (mail) on the internal network. A third public IP handles current VPN traffic for remote user machines.
I'd like to install my ASA connected to the inside of the PIX. I'd configure the PIX to route a fourth public IP to the ASA5505.
So my questions are:
Is this even possible?
Do I need to connect an inside VLAN of the ASA back into the inside network of the PIX (so that VPN connections can access workstations on the PIX inside network)?
Thanks in advance for comments, suggestions!