<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PIX 515 setup with 1 external IP in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-515-setup-with-1-external-ip/m-p/200057#M616704</link>
    <description>&lt;P&gt;We currently have a /30 external subnet to the internet (2 IP address in reality, 1 on outside of PIX, 1 on perimeter router). We want to allow 4 inside machines outbound using a variety of protocols and SMTP traffic inbound to the mail server. One of the inside machines is an HTTP proxy. I was going to use PAT oubound and static PAT inbound. Is this the best way of doing this given the lack of IPs?&lt;/P&gt;&lt;P&gt;Will PATing a proxied HTTP request result in degraded performance?&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 06:49:23 GMT</pubDate>
    <dc:creator>g.leonard</dc:creator>
    <dc:date>2020-02-21T06:49:23Z</dc:date>
    <item>
      <title>PIX 515 setup with 1 external IP</title>
      <link>https://community.cisco.com/t5/network-security/pix-515-setup-with-1-external-ip/m-p/200057#M616704</link>
      <description>&lt;P&gt;We currently have a /30 external subnet to the internet (2 IP address in reality, 1 on outside of PIX, 1 on perimeter router). We want to allow 4 inside machines outbound using a variety of protocols and SMTP traffic inbound to the mail server. One of the inside machines is an HTTP proxy. I was going to use PAT oubound and static PAT inbound. Is this the best way of doing this given the lack of IPs?&lt;/P&gt;&lt;P&gt;Will PATing a proxied HTTP request result in degraded performance?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 06:49:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515-setup-with-1-external-ip/m-p/200057#M616704</guid>
      <dc:creator>g.leonard</dc:creator>
      <dc:date>2020-02-21T06:49:23Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515 setup with 1 external IP</title>
      <link>https://community.cisco.com/t5/network-security/pix-515-setup-with-1-external-ip/m-p/200058#M616705</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You should be fine so long as the http proxy doesn't serve thousands of users. Theoretically, PAT can work for 65k connections, but in practice there are some limitations. Running out of PAT translation slots should be the only possible performance limitation, and that should only happen if you have 10s of thousands of concurrent connections.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 Jun 2003 15:39:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515-setup-with-1-external-ip/m-p/200058#M616705</guid>
      <dc:creator>mostiguy</dc:creator>
      <dc:date>2003-06-27T15:39:48Z</dc:date>
    </item>
  </channel>
</rss>

