<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX global pool in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777867#M1008360</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;well does the client just needs inbound access or outbound or both?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Secondly how many clients are there in total ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 03 Apr 2007 16:02:10 GMT</pubDate>
    <dc:creator>abinjola</dc:creator>
    <dc:date>2007-04-03T16:02:10Z</dc:date>
    <item>
      <title>PIX global pool</title>
      <link>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777866#M1008359</link>
      <description>&lt;P&gt;Network readdress project requires PIX changes.  We provide internet access for company w/in our campus (3rd party connect).  Currently 3rd party is config'd as "DMZ" on PIX 525.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We provide "network management" to the 3rd party by helping their admin do troubleshooting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;inside:  10.1.1.1 (existing range)&lt;/P&gt;&lt;P&gt;inside:  10.50.1.1 (new range)&lt;/P&gt;&lt;P&gt;outside (3rd party):  172.16.1.1&lt;/P&gt;&lt;P&gt;200 hosts on 3rd party network coming thru firewall&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is one-to-one nat the best approach for ease of troubleshooting their connections thru the fw?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;OR&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is it best to assign a "global pool" of inside addresses (10.50.1.1) to the fw which, when client on outside connects to internet, etc, would get a 10.50.1.x address?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is there a config out there which could help illustrate what i'm trying to acccomplish?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks for any info.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 09:55:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777866#M1008359</guid>
      <dc:creator>tsrader</dc:creator>
      <dc:date>2019-03-11T09:55:22Z</dc:date>
    </item>
    <item>
      <title>Re: PIX global pool</title>
      <link>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777867#M1008360</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;well does the client just needs inbound access or outbound or both?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Secondly how many clients are there in total ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Apr 2007 16:02:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777867#M1008360</guid>
      <dc:creator>abinjola</dc:creator>
      <dc:date>2007-04-03T16:02:10Z</dc:date>
    </item>
    <item>
      <title>Re: PIX global pool</title>
      <link>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777868#M1008361</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for your reply.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Total clients:  200&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Firewall provides client with internet / server reources (on our side) primarily.  Client also has remote users which access their systems in their network...so....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;client req's BOTH inbound and outbound access&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Apr 2007 16:25:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777868#M1008361</guid>
      <dc:creator>tsrader</dc:creator>
      <dc:date>2007-04-03T16:25:15Z</dc:date>
    </item>
    <item>
      <title>Re: PIX global pool</title>
      <link>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777869#M1008362</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;200 different clients behind the FW...and they needs access from outside world..right..?..you need to make a static xlate rules ..if above is this case.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Apr 2007 16:37:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777869#M1008362</guid>
      <dc:creator>abinjola</dc:creator>
      <dc:date>2007-04-03T16:37:17Z</dc:date>
    </item>
    <item>
      <title>Re: PIX global pool</title>
      <link>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777870#M1008363</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Correct on static xlates although access from "outside world" will only be to 10 servers.  The rest of connections will from client network TO outside world.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Assuming ip allocation is 10.50.1.0 /24.&lt;/P&gt;&lt;P&gt;allocate 10 ip's for static xlate&lt;/P&gt;&lt;P&gt;other 244 are available&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is this correct commmand to permit client access:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;global (outside) 1 10.50.1.0 netmask 255.255.255.0 &lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0 0 0&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Apr 2007 17:02:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777870#M1008363</guid>
      <dc:creator>tsrader</dc:creator>
      <dc:date>2007-04-03T17:02:48Z</dc:date>
    </item>
    <item>
      <title>Re: PIX global pool</title>
      <link>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777871#M1008364</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;for outbound access use the PAT IP :-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside) 1 0 0 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Apr 2007 17:28:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-global-pool/m-p/777871#M1008364</guid>
      <dc:creator>abinjola</dc:creator>
      <dc:date>2007-04-03T17:28:07Z</dc:date>
    </item>
  </channel>
</rss>

