Firewall Wizards mailing list archives

Re: full IPSEC tunnels on PIX and NAT ...


From: peter bartoli <peter () alphafight net>
Date: Wed, 3 Dec 2003 16:23:02 -0800


On Dec 2, 2003, at 11:38 PM, Miha Vitorovic wrote:
For one thing, the PIX can not route out through the same interface, the
packet comes into the device.

Thanks, I was aware of this limitation and should have known it was the cause.

Is it possible to get around this by having a static mapping on the outside to another interface of the PIX that I don't need VPNs to communicate with, and terminate VPNs on it?

-peter

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: