cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
287
Views
0
Helpful
2
Replies

How to route with a PIX?

jksnook
Level 1
Level 1

I have a PIX 501 with a Concentrator 3005 that establishes site VPN's to our other offices. When I setup static inside routes in the PIX to point to the Concentrator for my remote office LAN IP's I cannot route traffic. When a client on the PIX lan is using the PIX as the DG I cannot ping remote office. However if I add a static route in my Windows client the traffic routes correctly. Can someone tell me how to fix this?

Thanks,

Jason

2 Replies 2

mvoight
Level 1
Level 1

Can you clarify the topology?

Are you saying you have an inside route on the and are trying a ping from an client off the inside interface to another inside client on the inside, but not a router hop away from the inside subnet? You can't have a request hit the PIX inside interface and be redirected back to another device on the inside. Traffic must traverse from one inteface of the PIX to another.

daniel.kline
Level 1
Level 1

You will need an internal router to use as your DG. The "route inside" statements on the firewall are used to inform the firewall how to get to the other internal networks. The firewall cannot be used as a router as it cannot redirect traffic received on its internal interface back out the same interface.

Regards,

dk

Review Cisco Networking products for a $25 gift card