cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1095
Views
0
Helpful
2
Replies

Multiple PAT in PIX 525

Dear Sirs,

we`re using Cisco Secure PIX Firewall Version 5.2(8), and we neeed to configure multiple PAT.

we try to put it with the command

global (outside) 1 x.y.z.a netmask 255.255.255.0

for the first statement and

global (outside) 1 a.c.d.e netmask 255.255.255.0

for the second IP PAT.

But we don`t see any translation over the second one, just around the first one.

Is there a special configuration to performing the operation on PIX or is an automatic process?

Is a round robin process between PAT IP address?

Thanks in advance

Our PIX is a 525.

Thanks

Carlos.

2 Replies 2

r.nair
Level 1
Level 1

The PAT statements shall be for different IDs; i.e for different network segments.

srittenberg
Level 1
Level 1

Your statement looks correct. When using second IP for PAT address, it's act as a backup, you will not see the second PAT being used till the first one running out of port numbers. It supports (in pratical sense) up to 4000 port translations.

Review Cisco Networking products for a $25 gift card