I have not been able to find anything allowing me to perform the following.
I need to PAT a subnet residing on the outside interface when making a connection to a specific host (host A) reacheable via the inside interface. I don't want the outside addresses translated when connecting to anything else. My default gateway is via the inside interface.
I have tried using the nat (outside) command along with a global command on a specific interface (interface mins) I have added a route to HostA via a seperate interface. My thoughts were that traffic would pass this interface to reach the particular host and be nat'd. All other traffic would use the inside interface and not be nat'd. The location of this interface and the routing in place would cause the response to go this seperate interface.
Thank you very much, I'll certainly give this a try. That is very clever!
The nat (outside) 0 access-list 150 outside will still allow both hosts outside and inside to initiate connections to each other via their actual IP's right? I will need to staticly NAT the inside hosts to their own addresses on the outside. Assuming my ACL's are correct, it seems like I should be ok.
I'm using PIX's in somewhat of an odd fashion. My Internet facing firewalls are Checkpoint. I then use Pix's between the DMZ and the corporate network. There is one host on the inside that charges fee's per connecting IP address, hence the need for the PAT. :)
I'm fairly new to PIX's, I've been a long time user of that other firewall. :)
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...