<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: pix 520 different outside subnets in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-520-different-outside-subnets/m-p/17696#M642828</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Going by your sample config, you are putting each different subnet onto a different PIX interface?  If that'sthe case, then yes, the PIX can handle this, in fact it's the only way it'll handle it.  The PIX functions similarly to a router in it's IP functionality, so it will route traffic between interfaces.  You can't put more than one IP address on an interface like you can with a router though.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 06 Aug 2002 01:22:41 GMT</pubDate>
    <dc:creator>gfullage</dc:creator>
    <dc:date>2002-08-06T01:22:41Z</dc:date>
    <item>
      <title>pix 520 different outside subnets</title>
      <link>https://community.cisco.com/t5/network-security/pix-520-different-outside-subnets/m-p/17695#M642766</link>
      <description>&lt;P&gt;Hi Everyone, &lt;/P&gt;&lt;P&gt;have a question, I have 3 different subnets from my isp.  What I need to know is if the pix can handle the 3 different subnets or do I need a pix for each subnet. I want to disable nat, and have the machines using external address, with access-list permitting services.&lt;/P&gt;&lt;P&gt;example: subnet1: 192.168.1.1 -254&lt;/P&gt;&lt;P&gt;                  subnet2: 192.168.2.1-254&lt;/P&gt;&lt;P&gt;                  subnet3: 192.168.3.1-254&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pix outside interface 192.168.5.1 255.255.255.0&lt;/P&gt;&lt;P&gt;pix inside interface 192.168.1.1 255.255.255.0&lt;/P&gt;&lt;P&gt;pix dmz1 192.168.2.1 255.255.255.0&lt;/P&gt;&lt;P&gt;pix dmz2 192.168.3.1 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside) 0 192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (dmz1) 0 192.168.2.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (dmz2) 0 192.168.3.0 255.255.255.0&lt;/P&gt;&lt;P&gt;static (inside) 192.168.1.2  192.168.1.2 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;static (dmz1) 192.168.2.2 192.168.2.2 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;etc...&lt;/P&gt;&lt;P&gt;plus access-list ....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 06:11:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-520-different-outside-subnets/m-p/17695#M642766</guid>
      <dc:creator>aztecmother</dc:creator>
      <dc:date>2020-02-21T06:11:28Z</dc:date>
    </item>
    <item>
      <title>Re: pix 520 different outside subnets</title>
      <link>https://community.cisco.com/t5/network-security/pix-520-different-outside-subnets/m-p/17696#M642828</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Going by your sample config, you are putting each different subnet onto a different PIX interface?  If that'sthe case, then yes, the PIX can handle this, in fact it's the only way it'll handle it.  The PIX functions similarly to a router in it's IP functionality, so it will route traffic between interfaces.  You can't put more than one IP address on an interface like you can with a router though.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 Aug 2002 01:22:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-520-different-outside-subnets/m-p/17696#M642828</guid>
      <dc:creator>gfullage</dc:creator>
      <dc:date>2002-08-06T01:22:41Z</dc:date>
    </item>
  </channel>
</rss>

