[c-nsp] Need help with a solution...
Michael Malitsky
malitsky at netabn.com
Tue Nov 6 18:55:35 EST 2007
Cliff,
Unless I am misunderstanding, this looks like a straightforward "routed
networks behind PIX" scenario. Depending on complexity and scale, this
could be as simple as a static route pointing back to the network(s) at
center "B" and appropriate NAT/ACL statements on the PIX.
Let me know if you want to go into details.
Michael
> Message: 10
> Date: Mon, 5 Nov 2007 11:46:45 -0500
> From: Cliff <cbfcx4 at gmail.com>
> Subject: [c-nsp] Need help with a solution...
> To: cisco-nsp at puck.nether.net
> Message-ID:
> <6f61d5090711050846x35f9cd33ma5382aafb4ed7676 at mail.gmail.com>
> Content-Type: text/plain; charset=ISO-8859-1
>
> Hello all,
>
> I have a "challenge" (read: requirement) from a customer to implement
> the following. Basically, they have two datacenters, but only one
> with internet access (site "A"). They wish to have servers in the "B"
> site serve up data via the "A" site internet.
>
> They run a PIX-525 at "A" that controls the inet access/NATing/etc, a
> 6509 (mostly for L2 switching), with a FlexWAN/PA-2T3. Connected to
> "B" via DS3 to a 6513 also with a FlexWAN/PA-2T3. Both run SUP720's,
> routing protocol used is EIGRP.
>
> Basic diagram:
>
> INET<--->PIX<--->6509<---DS3--->6513<--->SERVERS
>
>
> I'm having trouble designing a solution for this, I know it's not a
> great setup, but any ideas or past experiences would be much
> appreciated. Sorry if my explanation wasn't too clear, if more
> information is needed, let me know.
>
> Obligatory: The best solution would be internet access in both
> locations, but isn't possible at this time.
>
> Thanks in advance...
More information about the cisco-nsp
mailing list