I have got PIX F/W , on which I am going to have ADSL line connected , and I want to publish my HTTP , FTP servers on the net plus provide a VPN connectivity to our UK office, the problem is ISP is not giving more then one fixed public IP , ADSL router is ALCATEL which is provided by the ISP. Now my problem is I don't have more then one IP address in this case can I have that one IP address on to ADSL router and do the port redirection , or is it that the VPN will not working unless I have fixed public IP on my FireWall.
Will be very thankfull to you all for the help as i am stuck in the situation.
I have setup a VPN with your situation (not port redirection but I don't see why it would not work) on a Cayman ADSL router not with an ALCATEL so there may be some differences (I had access to the Cayman config). In the Cayman I was able to do a one-to-one NAT from the outside interface of the Cayman to the outside interface of the PIX allowing all IP. At this point your PIX is using a subnet like 192.168.1.0 on the outside interface. Like your outside interface on the PIX would be 192.168.1.2 and and the Ethernet interafce on the ALCATEL would 192.168.1.1. Your inside subnet would need to be something different like 192.168.10.0. At that point you can write the VPN config as normal, and do all the port redirection off the outside interface of the PIX 192.168.1.2.
BenefitsDocumentationPrerequisiteImage Download LinksLimitationsSupported PlatformsLicense RequirementsTopologyStep-By-Step ConfigurationConfigure Virtual ServiceActivate the virtual service and configure guest IPsConfiguring UTD (Service Plane)Configurin...
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...