<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>Problems with Pix 506e configuration in Cisco</title>
<link>http://www.dslreports.com/forum/r14448887</link>
<description></description>
<language>en</language>
<pubDate>Mon, 30 Nov 2009 16:30:12 EDT</pubDate>
<lastBuildDate>Mon, 30 Nov 2009 16:30:12 EDT</lastBuildDate>

<item>
<title>Re: Problems with Pix 506e configuration</title>
<link>http://www.dslreports.com/forum/remark,14452483</link>
<description><![CDATA[<A HREF="/useremail/u/1268251"><b>cybernet99</b></A> : I had that in the back of my mind that I might need to get the ISP to log into their router and clear the arp cache. I just couldn't see what it was that I was missing. I still might be missing something, but it looks ok. <br><br>Thanks for the reply, I'll give that a try later tonight.<br><br>Cheers,<br><br>Tim ]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,14452483</guid>
<pubDate>Tue, 27 Sep 2005 10:28:35 EDT</pubDate>
</item>

<item>
<title>Re: Problems with Pix 506e configuration</title>
<link>http://www.dslreports.com/forum/remark,14452343</link>
<description><![CDATA[<A HREF="/useremail/u/623324"><b>Jugaad</b></A> : :)<br><br>try this<br><br>clear global<br>global (outside) 1 interface<br><br>If this works then either your outside router is not routing correctly or there are stale arp entries on outside directly connected devices like switches , router etc.<br><SMALL>--<br>Not able to get online? Good!! Go out and meet friends ;-)</SMALL>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,14452343</guid>
<pubDate>Tue, 27 Sep 2005 10:00:17 EDT</pubDate>
</item>

<item>
<title>Problems with Pix 506e configuration</title>
<link>http://www.dslreports.com/forum/remark,14448887</link>
<description><![CDATA[<A HREF="/useremail/u/1268251"><b>cybernet99</b></A> : I would sure like some help with a new PIx506e config I am working on. <br><br>I can't pass any traffic through it, must be missing something pretty simple, just can't see it for looking.<br><br>Here is the config, thanks in advance.<br><br>Tim <br><br>=========================================<br>PIX Version 6.3(3)<br>interface ethernet0 auto<br>interface ethernet1 auto<br>nameif ethernet0 outside security0<br>nameif ethernet1 inside security100<br>hostname PIX506<br>domain-name dasal.prv<br>fixup protocol dns maximum-length 512<br>fixup protocol ftp 21<br>fixup protocol h323 h225 1720<br>fixup protocol h323 ras 1718-1719<br>fixup protocol http 80<br>fixup protocol ils 389<br>fixup protocol rsh 514<br>fixup protocol rtsp 554<br>fixup protocol sip 5060<br>fixup protocol sip udp 5060<br>fixup protocol skinny 2000<br>no fixup protocol smtp 25<br>fixup protocol sqlnet 1521<br>fixup protocol tftp 69<br>names<br>access-list inside_acl permit icmp any any<br>access-list inside_acl permit tcp any any eq www<br>access-list inside_acl permit tcp any any eq https<br>access-list inside_acl permit udp any any eq domain<br>access-list inside_acl permit tcp any any eq domain<br>access-list inside_acl permit tcp any any eq pop3<br>access-list inside_acl permit tcp any any eq ftp<br>access-list inside_acl permit tcp any any eq 37<br>access-list inside_acl permit tcp any any eq nntp<br>access-list inside_acl permit tcp any any eq whois<br>access-list inside_acl permit udp any any eq time<br>access-list inside_acl permit tcp any any eq 3389<br>access-list outside_acl permit icmp any any<br>access-list outside_acl deny tcp any any eq 135<br>access-list outside_acl permit tcp any host xxx.xxx.0.201 eq ftp<br>access-list outside_acl permit tcp any host xxx.xxx.0.201 eq domain<br>access-list outside_acl permit udp any host xxx.xxx.0.201 eq domain<br>access-list outside_acl permit tcp any host xxx.xxx.0.201 eq 3389<br>pager lines 24<br>logging buffered debugging<br>mtu outside 1500<br>mtu inside 1500<br>ip address outside xxx.xxx.0.202 255.255.252.0<br>ip address inside 192.168.0.254 255.255.240.0<br>ip verify reverse-path interface outside<br>ip verify reverse-path interface inside<br>ip audit name IDS_Attack attack action alarm drop reset<br>ip audit name IDS_Info info action alarm<br>ip audit interface outside IDS_Info<br>ip audit interface outside IDS_Attack<br>ip audit interface inside IDS_Info<br>ip audit interface inside IDS_Attack<br>ip audit info action alarm<br>ip audit attack action alarm<br>ip audit signature 1000 disable<br>ip audit signature 2000 disable<br>ip audit signature 2001 disable<br>ip audit signature 2004 disable<br>ip audit signature 2005 disable<br>pdm location 192.168.0.175 255.255.255.255 inside<br>pdm location 192.168.0.0 255.255.0.0 inside<br>pdm history enable<br>arp timeout 14400<br>global (outside) 1 xxx.xxx.0.201 netmask 255.255.252.0<br>nat (inside) 1 0.0.0.0 0.0.0.0 0 0<br>static (inside,outside) xxx.xxx.0.201 192.168.0.175 netmask 255.255.255.255 0 0<br>access-group outside_acl in interface outside<br>access-group inside_acl in interface inside<br>route outside 0.0.0.0 0.0.0.0 xxx.xxx.0.1 1<br>timeout xlate 3:00:00<br>timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00<br>timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00<br>timeout uauth 0:05:00 absolute<br>aaa-server TACACS+ protocol tacacs+<br>aaa-server RADIUS protocol radius<br>aaa-server LOCAL protocol local<br>http server enable<br>http 192.168.0.0 255.255.0.0 inside<br>no snmp-server location<br>no snmp-server contact<br>snmp-server community public<br>no snmp-server enable traps<br>floodguard enable<br>telnet timeout 5<br>ssh timeout 5<br>console timeout 0<br>terminal width 80<br>Cryptochecksum:e097fa922eedd7c8a33dc67b7acd9c4a<br>: end<br>[OK]<br>=========================================]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,14448887</guid>
<pubDate>Mon, 26 Sep 2005 20:04:44 EDT</pubDate>
</item>

</channel>
</rss>
