Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Pix 501 - is it possible

Status
Not open for further replies.

msssltd

Programmer
Jun 30, 2000
1
GB
We have a small 5 user network with 1 public IP address assigned with DHCP from our ISP.

Our requirement is;
1. Allow 1 external user to connect to the network using PPTP. It would be nice to allow multiple concurrent connections, but it is not essential.
2. Allow 1 internal user to connect to multiple external Win2K PPTP RAS servers. Again concurrent connections would be nice but not essential.
3. Allow mulitple internal users to access the internet with as few limitations as possible.
4. Users will exclusively use the Microsoft PPTP/VPN client.

In the past I have configured PIX 501 to support combinations of the above, but only when a public subnet has been available for a NAT pool.

I am assuming the GRE protocol may cause a problem as we do not have a spare public IP address.

Is our requirement possible using a PIX 501 as the gateway router?

Regards
MattS
 
HI.

As far as I know, it won't work. Getting more addresses is my recommended solution.

This seems to me like the main problem, as you suspected:
2. Allow 1 internal user to connect to multiple external Win2K PPTP RAS servers. Again concurrent connections would be nice but not essential.

Products from other vendors might do this with a single ip address, but I think that the pix currently cannot.

Bye
Yizhar Hurwitz
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top