08-01-2008 06:17 AM - edited 03-03-2019 10:59 PM
I have a client with two seperate Internet connections back to AT&T; one Internet only the other Internet and voice. Each connection terminates to a seperate router with seperate WAN and LAN IP ranges. The two Internet routers currently connect to the integrated FastEthernet ports on a 2811 with an HWIC-4ESW and VLAN interface connecting to the PIX. The only way I could see to be able to use both conenctions was to do NAT on the 2811 and staticly translate Public IP ranges to a Private IP address and use the Private IP range on the outside of the PIX. The client also wants to be able to do remote user VPN to the PIX. Is there a better method of doing this?
08-04-2008 10:52 AM
Do NAT on the PIX.
Do HSRP with the routers, put a switch in between the routers and PIX.
You can use a HSRP address for each WAN IP range. So you'd have to HSRP'd addresses.
08-04-2008 11:06 AM
The Internet routers are managed by AT&T, and I do not have access to them. I am limited to only manipulating the LAN IP ranges.
The PIX is doing NAT from the 172.16.1x range to the Internal 192.168.100.x.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide