Section 4.0: PIX Configuration

4.1. Basic PIX Configuration

  1. Configure PIX host name, IP addresses, and so on.

  2. Do not configure any default or static route.

  3. Configure RIP and authentication for v2 as shown in Figure 3-2.

  4. Make sure you can ping AAA server, Loopback(s), and all networks in the topology.

4.2. Network Address Translation (NAT)

  1. Configure static NAT translation for all internal private address ranges. Change the first octet to 110. For example, translate 10.1.1.1 to 110.1.1.1. See Example 3-19.

  2. Do not translate Loopback1(s) on devices behind PIX; they should be visible on devices outside. See Example 3-19.

  3. Configure NAT for AAA server 10.1.5.125 to 120.5.72.125. See Example 3-19.

  4. Configure the nat and global commands to translate all other ...

Get CCIE Security Practice Labs now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.