cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
231
Views
0
Helpful
1
Replies

Cisoc firewall Pix 515e

Dear All,

I need some help related to cisco pix 515e. I need to create a inter vlan and want to make network segment. right now i have flat admin network and i need to make a new vlan name CDE (credit card data environment) and will move some workstation to new CDE network with new subnet but both network shoudl have access all software which is running for admin network. for example A in cde network and CComputer B in Not CDE network and a want to access to B so it will possible only if we have intervlan allowed in frewall.

Please help ...

1 Reply 1

You want to protect credit card data with a firewall that is out of support and didn't get security updates for thousands of years? Well, good luck with your audits ... (yes, I'm overstating it a bit; still, you are putting your company at risk by operating an outdated security device).

Back to your problem. Inter VLAN routing is allowed out of the box on the PIX. All you need is:

  1. Configure a new interface for the new network.
  2. Configure Access-Control for the new network and the old networks to only allow the communication that is needed
  3. Based on your needs, configure NAT-rules to translate the traffic (if you have to based on PCI requirements or other means) or exempt your traffic from NAT.
Review Cisco Networking for a $25 gift card