Hi everyone,
I was hoping you guys would be kind enough to help me out with a little dilema I am having. I used to have a PIX wich was connected to an internetline without a modem. Perfect in my opinion since a PIX is a border device.
So this was the situation:
Internet
|
PIX-----DMZ
|
Inside
Due to some events (poor service provided by the internet provider of the building) we had to switch to an dfferent internet provider. The internet provider gave us a cisco router with SDSL modem.
The setup would become something like this. I really like to keep the pix for natting and vpn, since i havent had any problems with it and it does it job well (and in my opinion this is what a PIX should be used for. Let the PIX do the natting and the VPN, and the router the routing).
Internet
|
|
Router
|
|
PIX-----DMZ
|
|
Inside
The easiest way to achieve this would be to create a double nat (PIX nat and Router nat), but in my opinion this would also be the ugliest way. What i really want is the PIX to have the IP of the outside interface of the router (a layer 2 bridge). So the router does the dialing in etc (Since my provider doesnt use PPPOE I can't use the PIX's PPPOE Dialer).
If anybody has another idea then a bridge im ofcourse also open to it
Thanks in advance.
I was hoping you guys would be kind enough to help me out with a little dilema I am having. I used to have a PIX wich was connected to an internetline without a modem. Perfect in my opinion since a PIX is a border device.
So this was the situation:
Internet
|
PIX-----DMZ
|
Inside
Due to some events (poor service provided by the internet provider of the building) we had to switch to an dfferent internet provider. The internet provider gave us a cisco router with SDSL modem.
The setup would become something like this. I really like to keep the pix for natting and vpn, since i havent had any problems with it and it does it job well (and in my opinion this is what a PIX should be used for. Let the PIX do the natting and the VPN, and the router the routing).
Internet
|
|
Router
|
|
PIX-----DMZ
|
|
Inside
The easiest way to achieve this would be to create a double nat (PIX nat and Router nat), but in my opinion this would also be the ugliest way. What i really want is the PIX to have the IP of the outside interface of the router (a layer 2 bridge). So the router does the dialing in etc (Since my provider doesnt use PPPOE I can't use the PIX's PPPOE Dialer).
If anybody has another idea then a bridge im ofcourse also open to it

Thanks in advance.