Re: [c-nsp] FWSM access permissions confusion between interfaces

2009-07-23 Thread John Kougoulos
Hello, I had once tried to use the NAT controls on the interfaces on a PIX and I was dissappointed because things didn't work as expected, but I don't remember the exact details. What I remember is that if you want to be safe, you must put access-list everywhere. So I use now no nat-control

[c-nsp] FWSM access permissions confusion between interfaces

2009-07-22 Thread Jeff Kell
Greetings. I have an unusual (perhaps) FWSM application that is not quite working out as expected, and after several variations from different angles, still not producing quite the desired result. I have a 6509 doing VRFs for different campus communities, and since many of our services /

Re: [c-nsp] FWSM access permissions confusion between interfaces

2009-07-22 Thread Tony Varriale
Have you tried policy static NATs? Aka if source and destination match ACL perform static for specified interfaces. tv - Original Message - From: Jeff Kell jeff-k...@utc.edu To: cisco-nsp cisco-nsp@puck.nether.net Sent: Wednesday, July 22, 2009 1:31 PM Subject: [c-nsp] FWSM access