11-13-2005 07:20 AM - edited 02-21-2020 12:31 AM
My requirement is to do url filtering using websense for my lan and remote branches.
Tunnels from all branches will terminate on outside interface of my pix. As any traffic to internet ll leave the pix straight away through outside interface, how can i make my websense get http traffic from branch as well as my lan.
I am planning to perform nat on the router, which lies in front of pix.
Does outside interface support integration with websense. In this case i ll do no-nat for traffic from inside interface.
All traffic to internet will get natted/patted in router.
11-13-2005 03:07 PM
you mentioned, "Tunnels from all branches will terminate on outside interface of my pix".
i am assuming the tunnels are ipsec vpn tunnels. i was just wondering how would the pix re-route the internet traffic originated from the branch.
11-13-2005 11:06 PM
As the incoming traffic is from Tunnel source and it becomes private once its there in firewall.
I think it should work, as the incoming traffic is from Public IP while the outgoing traffic is a new private network.
Firewall should identify the traffic based on IP header.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide