Firewall Wizards mailing list archives
RE: PIX to PIX VPN from within a private network.
From: "Utz, Ralph" <rutz () realtime-it com>
Date: Tue, 14 Mar 2006 15:48:14 -0600
Your best bet would be to have your ISP configure your internet router for pass through. IE. Your PIX will get the public IP address. As it stands now, you're not gonna be able to setup that vpn unless you can configure that internet modem and get a little lucky. -----Original Message----- From: firewall-wizards-admin () honor icsalabs com [mailto:firewall-wizards-admin () honor icsalabs com] On Behalf Of Greg Sent: Monday, March 13, 2006 5:03 PM To: firewall-wizards () honor icsalabs com Subject: [fw-wiz] PIX to PIX VPN from within a private network. Hello, I have a PIX at home and would like to connect via site to site VPN to the PIX at work which I also maintain. The problem I think I may run into is I have a private network between the internet router and my internal home PIX. The segment between the internet router and the internal PIX is 10.0.0.0/24, the outside interface of the PIX is numbered 10.0.0.1. I'll try my hand at drawing this out: WORK: INTERNAL-NET(10.31.0.0/16) >> PIX(NAT) >> INTERNET HOME: INTERNAL-NET(216.138.246.208/27) >> (inside int 216.138.246.209)PIX(outside int 10.0.0.2) >> (10.0.0.1)Cisco827dsl(216.138.247.130) >> INTERNET or in simple: INTERNAL-HOME-NETW(internet routable) >> ROUTER >> PIX >> INTERNET Can I set up a site to site vpn, apply the config to the external interface of the pix(10.0.0.1) and be able to connect work's PIX without issues (due to the fact 10.0.0.1 would not be routeable on the internet)? I hope I'm being clear in what I'm after. I envision the PIX at work trying to connect back to 10.0.0.1. thanks in advance, greg _______________________________________________ firewall-wizards mailing list firewall-wizards () honor icsalabs com http://honor.icsalabs.com/mailman/listinfo/firewall-wizards _______________________________________________ firewall-wizards mailing list firewall-wizards () honor icsalabs com http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
Current thread:
- PIX to PIX VPN from within a private network. Greg (Mar 14)
- Re: PIX to PIX VPN from within a private network. John Adams (Mar 14)
- Re: PIX to PIX VPN from within a private network. Greg (Mar 15)
- Re: PIX to PIX VPN from within a private network. Patrick M. Hausen (Mar 15)
- Re: PIX to PIX VPN from within a private network. Greg (Mar 17)
- <Possible follow-ups>
- RE: PIX to PIX VPN from within a private network. Utz, Ralph (Mar 14)
- Re: PIX to PIX VPN from within a private network. John Adams (Mar 14)