until PIX 5.1.x code is re-released you should stick with terminating
your VPN tunnel on the outside interface of the PIX. (e-mail me and
I'll have a good sample config by then for you to use if you don't have
one yet...)
there is, however, one caveat... are you NAT'ing your address space? if
so, you are chasing the wind in trying to set up a PIX-to-PIX IPSec
tunnel, and there is no one yet in the TAC who is able to do it.
GWA
___________________________________
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]