We require a site to site connection across the internet for a customer. The customer requires connectivity from the Head Office to all devices at the remote site with return data.
The customer does not want the remote site to be able to initiate access to devices at the Head Office.
This can be done using a reflexive access list in a router but this is not available on a PIX.
We need to be able to do the equivalent in a PIX 520.
Note we can not use the inside interface of the PIX on the internet side as this is a security issue.