Re: ISA 2004 Routing

From: Town Dummy (towndummy_at_stupid.com)
Date: 10/04/04


Date: Mon, 04 Oct 2004 19:11:28 GMT

You do it though the Routing and Remote access manager and add a route that
goes from the interface where you receive the packet to the interface on
your network where you want the packet to go.

It's a log easier than trying to make a rule because the ISA server is a
piece of crap when it comes to routing.

"Chris Rendall" <crendall@teamind.com> wrote in message
news:2004100413404716807%crendall@teamindcom...
> I have ISA 2004 running and I need to access the subnet that is
> connected to my PIX.
>
> I have one NIC setup in the 192.168.1.0 subnet and another NIC setup on
> 172.16.2.0/24 subnet that goes out a Cisco router to the internet. I
> have a PIX connected to a different ISP and that PIX has a
> 172.16.1.0/24 subnet for the DMZ as well as the 192.168.1.0/24 subnet
> for the internal network.
>
> How do I configure ISA to route traffic from internal 192.168.1.0/24 to
> the PIX DMZ subnet at 172.16.1.0/24?
>
> Thanks,
> Chris
>



Relevant Pages

  • Re: Cisco PIX 501: Cant ping global IP-Adress from NATed IP
    ... on the 'static' statement for the server, add the 'dns' keyword. ... The catch is that the two interfaces cannot have the same IP subnet, ... of the external interface. ... then the PIX wouldn't know which interface to send it towards. ...
    (comp.dcom.sys.cisco)
  • Re: Pix 501 Tunnelling problem
    ... You may also need to add the deny rule to your Crypto Access-List ... otherwise the PIX will still try to send the packets over the VPN. ... but the packet never exits the outside interface. ...
    (comp.dcom.sys.cisco)
  • Re: Pix 501 Tunnelling problem
    ... You may also need to add the deny rule to your Crypto Access-List ... otherwise the PIX will still try to send the packets over the VPN. ... but the packet never exits the outside interface. ...
    (comp.dcom.sys.cisco)
  • Re: [fw-wiz] full IPSEC tunnels on PIX and NAT ...
    ... For one thing, the PIX can not route out through the same interface, the ... packet comes into the device. ... if your VPNs terminate on the outside ...
    (Firewall-Wizards)
  • Re: changing pix internal address
    ... I have rewritten the config file to reflect what I feel the configuration should look like. ... I cant just ditch the .1 subnet, I got printers workstations, other routers and servers stuck in there. ... :I want to reconfigure the pix to be on 192.168.41.x but not cause ... :can I bind two addresses to the pix internal interface as an intrim ...
    (comp.dcom.sys.cisco)