cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
288
Views
0
Helpful
1
Replies

pix site to site - is spoke to spoke possible ?

chang-michael
Level 1
Level 1

Hello,

we're trying to set up over 30 site to site vpns in a hub-and-spoke and model where both the hub and spoke boxes are pix. I know usually spoke to spoke communication is not allowed throught the hub pix. Is there any workaround or do we have to move a 3000 for the hub ?

Tks

1 Reply 1

gfullage
Cisco Employee
Cisco Employee

Spoke to spoke communication is only possible if the spokes terminate on different interfaces in the PIX. With over 30 spokes that's not going to be possible.

Your best bet is to use a 3000 for this, put it in parallel with the PIX or behind it (with a static translation through the PIX for it) and use it for all your VPN traffic, and use the PIX for all your outgoing Internet traffic.

Review Cisco Networking for a $25 gift card