Would someone mind explaining to me how addressing works on the outside interface of a PIX in a site-to-site VPN configuration with edge routers connected to the internet?
PIX1(outside)----(e0)R1(e1)--------INTERNET------(e1)R2(e0)----(outside) PIX2 If I'm provided a /29 address by my ISP for PIX1's site, then how does the PIX1's outside and R1's ethernet addresses get provisioned (same question for PIX2's site)? Is it a simple /30 private network between the PIX and routers, or do they get public addressing? In all the VPN examples I've seen on TAC, they've used public addressing here. If so, then how do the routers use IP addresses? Are they bridged or unnumbered in some way? How do the PIX's use private addresses as for their crypto peer statements? What are the best practices here? Sorry for the barrage... Thanks, Ed Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=57648&t=57648 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

