cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1144
Views
0
Helpful
1
Replies

Multiple PIX firewalls on same subnet

jimh
Level 1
Level 1

I have 2 PIX firewalls (PIX_A & PIX_B) on the same subnet (LAN1) and 1 remote PIX attached to LAN2.

PIX_A has a private link connection to PIX_R. I have just added PIX_B and configured a static route for traffic bound for the remote LAN2 as follows:

route inside 172.16.0.0 255.255.255.0 192.168.0.1 1

I have configured several of the hosts on LAN1 to use the inside interface on PIX_B as their default gateway but this traffic is not getting routed back to PIX_A. Connectivity between PIX_B and hosts LAN2 has been confirmed. Am I missing something obvious here?

The IP's are configured as follows:

PIX_A 520 version 4.4(1) inside 192.168.0.1/24 outside 10.10.5.x/26

PIX_B 515 version 5.2(6) inside 192.168.0.4/24 outside 10.10.7.x/26

PIX_R 515 version 4.4(7) 172.16.0.1/24

LAN1 192.168.0.0/24

LAN2 172.16.0.0/24

Thanks in advance,

Jim

1 Reply 1

HEATH FREEL
Level 1
Level 1

I my have misunderstood the setup but the PIX will not allow you to route in and out the same interface.

If PIX_B is the Default and you want to route that traffic back to PIX_A on the same subnet it is not possible.

You could use an internal router with route maps to control the flow.

I hope this helps.

Review Cisco Networking for a $25 gift card