cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
525
Views
0
Helpful
2
Replies

How do I allow from low to high

mmssandhu
Level 1
Level 1

I have PIX 515 ver 5.1 with six interfaces. I have to allow a network on one of the interfaces to inside of my network. Do i use NAT or should I use static/conduit. Please advice also appr. if u could provide with sample config.

2 Replies 2

millerv
Level 1
Level 1

Either an access list (Cisco preferred) or a conduit. I generally use statics to map specific hosts

from one security level to another. Are allowing the entire low security subnet to access the high

security subnet ? or just specific hosts ?

doug.nguyen
Level 1
Level 1

You can use a static command:

static (inside,DMZ1) 10.0.0.0 10.0.0.0 netmask 255.0.0.0 0 0

This will allow you to access from the Low directly to the High.