Would someone mind explaining to me how addressing works on the outside
interface of a PIX in a site-to-site VPN configuration with edge routers
connected to the internet?

PIX1(outside)----(e0)R1(e1)--------INTERNET------(e1)R2(e0)----(outside)
PIX2

If I'm provided a /29 address by my ISP for PIX1's site, then how does
the PIX1's outside and R1's ethernet addresses get provisioned (same
question for PIX2's site)?

Is it a simple /30 private network between the PIX and routers, or do
they get public addressing?  In all the VPN examples I've seen on TAC,
they've used public addressing here.  If so, then how do the routers use
IP addresses?  Are they bridged or unnumbered in some way?  How do the
PIX's use private addresses as for their crypto peer statements?  What
are the best practices here?  Sorry for the barrage...

Thanks,

Ed




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=57648&t=57648
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to