cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
250
Views
0
Helpful
3
Replies

Routing Problem in PIX

rakshitj
Level 1
Level 1

Hi,

I am Rakshit Jethva,I am working as a Network Engineer in a BPO.

We are having Internet from 2 ISP. I am having problem in Natting, i would be happy if any 1 can help me out.

My Scenario is, we are having 2 ROUTERS and 1 PIX 515E.

1st ISP has Public IP of 1.1.1.1 and another has Public IP of 2.2.2.2

We are having 1 Default route on PIX which is for 1st ISP (i.e. 1.1.1.1 it goes to 1st ISP router ), we are NATTING our VLANS on different PUBLIC IP of 1st ISP (192.168.1.0 to 1.1.1.5 or 192.168.2.0 to 1.1.1.6)

Now we have got 1 group of Public IP from 2nd ISP,

I have problem that after Natting is done on 1 of the VLAN ( you can take example 192.168.11.0 ) to be natted on Public IP of 2nd ISP ( 2.2.2.5 ).

Since we are having default route my Packets are not going via 1st ISP (1.1.1.1).

So can any 1 Tell me how can i route the packet to 2nd ISP.

If we configure Routing Protocol like OSPF,should we have to make any changes at ISP end or not.

If any 1 can help me out, i would be thankful to him.

Please mail me at rakshit_jethva@yahoo.co.in

You can also add me in Yahoo Messenger.

Thanx in advance to you all if you can help me out to come from this situation.

3 Replies 3

sachinraja
Level 9
Level 9

Hi Rakshit,

This is not possible with the PIX OS as of now. You cannot add 2 default routes on the PIX .. even with ospf you cannot load balance between the isps.. you can terminate the links on the same router or do some sort of source based routing on the first router..

hope this helps...

raj

PIX does support ECMP based loadbalancing upto 3 peers on the same interface. Thats all I can find as far as documentation to support the statement.

http://www.cisco.com/en/US/products/sw/secursw/ps2120/products_configuration_guide_chapter09186a0080172786.html

Sankar Nair
UC Solutions Architect
Pacific Northwest | CDW
CCIE Collaboration #17135 Emeritus

Hi,

Thanx for the reply.

I wanna inform you that i have configured 2 Interface on PIX for outside.

E0 for 1st ISP ( 1.1.1.2 ) and

E1 for 2nd ISP ( 2.2.2.3 )

E2 is for Inside

E3 is for DMZ.

My aim is to tramsit packets of VLAN 192.168.2.0 tp E1.

As i have told i have 1 default route 1.1.1.2 255.255.255.255 which dont permit to transmit the packet through 2.2.2.3.

I hope you got my point.

If you can come online on yahoo messenger i could explain you bit more in proper manner.

rakshit_jethva@yahoo.co.in

Thanx a lot.....

Review Cisco Networking for a $25 gift card