Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

How to route with a PIX?

I have a PIX 501 with a Concentrator 3005 that establishes site VPN's to our other offices. When I setup static inside routes in the PIX to point to the Concentrator for my remote office LAN IP's I cannot route traffic. When a client on the PIX lan is using the PIX as the DG I cannot ping remote office. However if I add a static route in my Windows client the traffic routes correctly. Can someone tell me how to fix this?



New Member

Re: How to route with a PIX?

Can you clarify the topology?

Are you saying you have an inside route on the and are trying a ping from an client off the inside interface to another inside client on the inside, but not a router hop away from the inside subnet? You can't have a request hit the PIX inside interface and be redirected back to another device on the inside. Traffic must traverse from one inteface of the PIX to another.

New Member

Re: How to route with a PIX?

You will need an internal router to use as your DG. The "route inside" statements on the firewall are used to inform the firewall how to get to the other internal networks. The firewall cannot be used as a router as it cannot redirect traffic received on its internal interface back out the same interface.



CreatePlease login to create content