PDA

View Full Version : Combining PIX and ASA


Fuzz
01-20-2011, 08:36 AM
I need to replace a current PIX, with 6 interfaces currently in use, to a 5510 with only 5 interfaces. There are currently 3 DMZs, internal & external, and failover. I had the idea that I could run a PIX off one interface on the ASA - DMZ - and then use the PIX to split the single DMZ into three DMZs with different security levels, leaving 4 interfaces on the ASA for internal, external and failover.

Is this plausible? I'm not using and IPS module but I don't really want to use a 4-port module as it costs about the same as the ASA itself.

Big Evil
01-20-2011, 09:01 AM
I do not see why not mate, it is sure a hard thing to do though.