<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Routing through the PIX in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659373#M497448</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Your other option is to add vlans to this DMZ network and assign the different IP hosts to the corresponding vlans. Then configure the DMZ interface as a Trunk and the switchport from an access port to a trunk.  Assign the secondary you wanted to the new VLAN interface on the PIX.  Assign the original PIX interface IP to the 2nd vlan on the PIX.  Setup ACLs and translations to allow routing to these networks.  VLANs were available as of 6.3 I believe, but check the release notes of your version to be sure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate any helpful posts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Fred&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 15 Sep 2006 14:49:26 GMT</pubDate>
    <dc:creator>fred.s.mollenkopf</dc:creator>
    <dc:date>2006-09-15T14:49:26Z</dc:date>
    <item>
      <title>Routing through the PIX</title>
      <link>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659367#M497438</link>
      <description>&lt;P&gt;i have an interface on one of my dmz interfaces with ip address 172.27.127.1/24 to a LAN with networks 172.27.127.0/24 and 172.27.124.0/24...how do i reach the 172.27.124 network through this interface through the PIX dmz int ,can it accept a secondary ip ?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 09:10:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659367#M497438</guid>
      <dc:creator>Kwakachunga</dc:creator>
      <dc:date>2020-02-21T09:10:38Z</dc:date>
    </item>
    <item>
      <title>Re: Routing through the PIX</title>
      <link>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659368#M497439</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi  ..  Are you able to reach 172.27.124.X network from a device located on the 172.27.127.X segment  ..?  If you can can you send the tracert output  .. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Sep 2006 05:00:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659368#M497439</guid>
      <dc:creator>Fernando_Meza</dc:creator>
      <dc:date>2006-09-15T05:00:25Z</dc:date>
    </item>
    <item>
      <title>Re: Routing through the PIX</title>
      <link>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659369#M497441</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;yes i can there is another linux box with ip 172.27.127.6 that does the routing....&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Sep 2006 07:41:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659369#M497441</guid>
      <dc:creator>Kwakachunga</dc:creator>
      <dc:date>2006-09-15T07:41:24Z</dc:date>
    </item>
    <item>
      <title>Re: Routing through the PIX</title>
      <link>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659370#M497443</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;have you tried adding static routes on the pix?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Sep 2006 11:26:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659370#M497443</guid>
      <dc:creator>mgaysek</dc:creator>
      <dc:date>2006-09-15T11:26:47Z</dc:date>
    </item>
    <item>
      <title>Re: Routing through the PIX</title>
      <link>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659371#M497444</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is not possible to have secondary addresses in a PIX. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The only solution I can think for this, is to have another device (can be a router with secondary ip address) to do the routing between the two networks for the PIX to the machines in the network 172.27.124.0/24 and the reverse path.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Although I would prefer to have only an IP address, I can't think any need for having two networks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Sep 2006 12:37:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659371#M497444</guid>
      <dc:creator>Alejandro Cadarso Cerdeirina</dc:creator>
      <dc:date>2006-09-15T12:37:48Z</dc:date>
    </item>
    <item>
      <title>Re: Routing through the PIX</title>
      <link>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659372#M497446</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;To accomplish this, you will need a router on the DMZ network with a route to the 172.27.124.0 network.  In addition, you need to add a route on the firewall that points to the router's IP when going to that subnet.  (ex: route dmz 172.27.124.0 255.255.255.0 172.27.127.50)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Sep 2006 13:57:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659372#M497446</guid>
      <dc:creator>jwalker</dc:creator>
      <dc:date>2006-09-15T13:57:10Z</dc:date>
    </item>
    <item>
      <title>Re: Routing through the PIX</title>
      <link>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659373#M497448</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Your other option is to add vlans to this DMZ network and assign the different IP hosts to the corresponding vlans. Then configure the DMZ interface as a Trunk and the switchport from an access port to a trunk.  Assign the secondary you wanted to the new VLAN interface on the PIX.  Assign the original PIX interface IP to the 2nd vlan on the PIX.  Setup ACLs and translations to allow routing to these networks.  VLANs were available as of 6.3 I believe, but check the release notes of your version to be sure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate any helpful posts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Fred&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Sep 2006 14:49:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-through-the-pix/m-p/659373#M497448</guid>
      <dc:creator>fred.s.mollenkopf</dc:creator>
      <dc:date>2006-09-15T14:49:26Z</dc:date>
    </item>
  </channel>
</rss>

