<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 506 Config in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/506-config/m-p/705756#M1012649</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ok so is ISP doing natting on their router ?&lt;/P&gt;&lt;P&gt;if not then they have to...also from our side you need to make sure the request is passing through the firewall&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;add the line access-l acl_in permit icmp any any try pinging the gateway of the firewall from any inside machine, if you are able to ping that means the FW is passing the traffic and its your router not routing it further..&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 22 Mar 2007 20:07:40 GMT</pubDate>
    <dc:creator>abinjola</dc:creator>
    <dc:date>2007-03-22T20:07:40Z</dc:date>
    <item>
      <title>506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705747#M1012634</link>
      <description>&lt;P&gt;I think I am on the right track but unsure. Again, I am running PIX 506 (only 2 interfaces-stuck with 5.1(2) software) on a small network.&lt;/P&gt;&lt;P&gt;Here is what I am trying to achieve:&lt;/P&gt;&lt;P&gt;1) Allow unrestricted internet access from the inside interface.&lt;/P&gt;&lt;P&gt;2) Allow incoming connections to my web server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is what I have so far:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX Version 5.1(2)&lt;/P&gt;&lt;P&gt;nameif ethernet0 outside security0&lt;/P&gt;&lt;P&gt;nameif ethernet1 inside security100&lt;/P&gt;&lt;P&gt;enable password xxxxxxxxxx encrypted&lt;/P&gt;&lt;P&gt;passwd xxxxxxxxxxxxx encrypted&lt;/P&gt;&lt;P&gt;hostname itfw1&lt;/P&gt;&lt;P&gt;fixup protocol ftp 21&lt;/P&gt;&lt;P&gt;fixup protocol http 80&lt;/P&gt;&lt;P&gt;fixup protocol h323 1720&lt;/P&gt;&lt;P&gt;fixup protocol rsh 514&lt;/P&gt;&lt;P&gt;fixup protocol smtp 25&lt;/P&gt;&lt;P&gt;fixup protocol sqlnet 1521&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;access-list acl_in permit tcp any host 10.0.0.5 eq www&lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging on&lt;/P&gt;&lt;P&gt;no logging timestamp&lt;/P&gt;&lt;P&gt;no logging standby&lt;/P&gt;&lt;P&gt;no logging console&lt;/P&gt;&lt;P&gt;no logging monitor&lt;/P&gt;&lt;P&gt;no logging buffered&lt;/P&gt;&lt;P&gt;no logging trap&lt;/P&gt;&lt;P&gt;no logging history&lt;/P&gt;&lt;P&gt;logging facility 20&lt;/P&gt;&lt;P&gt;logging queue 512&lt;/P&gt;&lt;P&gt;interface ethernet0 10baset&lt;/P&gt;&lt;P&gt;interface ethernet1 10baset&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;ip address outside 10.0.0.1 255.0.0.0&lt;/P&gt;&lt;P&gt;ip address inside 192.168.254.1 255.255.255.0&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;global (outside) 1 10.0.0.3 netmask 255.0.0.0&lt;/P&gt;&lt;P&gt;global (outside) 1 10.0.0.20-10.0.0.100 netmask 255.0.0.0&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0 0 0&lt;/P&gt;&lt;P&gt;static (inside,outside) 10.0.0.5 192.168.254.20 netmask 255.255.255.255 0 0&lt;/P&gt;&lt;P&gt;access-group acl_in in interface outside&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 10.0.0.2 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00 conn 1:00:00 half-closed 0:10:00 udp 0:02:00&lt;/P&gt;&lt;P&gt;timeout rpc 0:10:00 h323 0:05:00&lt;/P&gt;&lt;P&gt;timeout uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+&lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius&lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;snmp-server community public &lt;/P&gt;&lt;P&gt;no snmp-server enable traps&lt;/P&gt;&lt;P&gt;floodguard enable&lt;/P&gt;&lt;P&gt;isakmp identity hostname&lt;/P&gt;&lt;P&gt;telnet timeout 5&lt;/P&gt;&lt;P&gt;terminal width 80&lt;/P&gt;&lt;P&gt;Cryptochecksum:xxx&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You are all saints...my deepest gratitude for helping me learn!&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 09:50:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705747#M1012634</guid>
      <dc:creator>srberg5219</dc:creator>
      <dc:date>2019-03-11T09:50:31Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705748#M1012636</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you nat'ing again on an outside router or something? 10. is not routable and would explain why you can't get to the internet.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 13:02:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705748#M1012636</guid>
      <dc:creator>acomiskey</dc:creator>
      <dc:date>2007-03-22T13:02:12Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705749#M1012638</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here is the design and flow:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1)Router IP: 10.0.0.2&lt;/P&gt;&lt;P&gt;2) PIX: Outside IP: 10.0.0.1 Inside IP: 192.168.254.1&lt;/P&gt;&lt;P&gt;3)Network: 192.168.254.0/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 16:22:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705749#M1012638</guid>
      <dc:creator>srberg5219</dc:creator>
      <dc:date>2007-03-22T16:22:46Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705750#M1012640</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;From you first post. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#1. Internet access from inside users. You will have to nat them somewhere to a public routable ip address. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#2. You will have to have a static translation somewhere for your public services. (Where is your webserver translated to 10.0.0.5?)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 17:17:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705750#M1012640</guid>
      <dc:creator>acomiskey</dc:creator>
      <dc:date>2007-03-22T17:17:18Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705751#M1012641</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;the fw outside interface doesnt seems to have a routable IP on internet, thereofore on firewall you do have appropriate xlate rules,however you need to nat  on the router as well&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;whats the wan interface of the router ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 17:20:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705751#M1012641</guid>
      <dc:creator>abinjola</dc:creator>
      <dc:date>2007-03-22T17:20:08Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705752#M1012643</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I bet it's 74.41.202.106...from his previous post.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You either have to nat twice or get a /30 network for your inside of outside router and outside of pix. Or get rid of the dsl router and get a dsl modem, put 74.41.202.106 on outside of pix.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 17:26:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705752#M1012643</guid>
      <dc:creator>acomiskey</dc:creator>
      <dc:date>2007-03-22T17:26:33Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705753#M1012644</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Maybe I need to go back and learn a bit more...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just a minor recap:&lt;/P&gt;&lt;P&gt;(PIX model 506)&lt;/P&gt;&lt;P&gt;=================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;===============&lt;/P&gt;&lt;P&gt;====Internet===&lt;/P&gt;&lt;P&gt;===============&lt;/P&gt;&lt;P&gt;|&lt;/P&gt;&lt;P&gt;Leased external static IP: 74.41.201.106&lt;/P&gt;&lt;P&gt;(FQDN resolved to this IP from internet)&lt;/P&gt;&lt;P&gt;|&lt;/P&gt;&lt;P&gt;DSL Router's internal IP: 10.0.0.2&lt;/P&gt;&lt;P&gt;|&lt;/P&gt;&lt;P&gt;Pix Outside Interface IP: 10.0.0.1&lt;/P&gt;&lt;P&gt;|&lt;/P&gt;&lt;P&gt;Pix Inside Interface IP: 192.168.254.1&lt;/P&gt;&lt;P&gt;|&lt;/P&gt;&lt;P&gt;Network:&lt;/P&gt;&lt;P&gt;Web server: 192.168.254.20&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have set NAT to inside interface with:&lt;/P&gt;&lt;P&gt;nat (inside) 1 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have set global on outside interface:&lt;/P&gt;&lt;P&gt;global (outside) 10.0.0.3 netmask 255.0.0.0&lt;/P&gt;&lt;P&gt;global (outside) 1 10.0.0.20-10.0.0.100 netmask 255.0.0.0 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I set the default route to router:&lt;/P&gt;&lt;P&gt;route outside 0 0 10.0.0.2 1 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I add a static to allow traffic INTO my webserver and appropriate ACL list:&lt;/P&gt;&lt;P&gt;static (inside,outside) 10.0.0.5 192.168.254.20 netmask 255.255.255.255 0 0&lt;/P&gt;&lt;P&gt; access-list acl_in permit tcp any host 10.0.0.5 eq www&lt;/P&gt;&lt;P&gt;access-group acl_in in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 17:45:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705753#M1012644</guid>
      <dc:creator>srberg5219</dc:creator>
      <dc:date>2007-03-22T17:45:24Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705754#M1012646</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;For outbound access you need to translate the private ip to a public routable ip on the router.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so the gateway of the firewall.i.e DSL ROuter is simply a modem or a configurable router ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 18:02:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705754#M1012646</guid>
      <dc:creator>abinjola</dc:creator>
      <dc:date>2007-03-22T18:02:44Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705755#M1012647</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Correct. The outside interface of my pix goes directly to my isp's provided dsl router.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 19:58:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705755#M1012647</guid>
      <dc:creator>srberg5219</dc:creator>
      <dc:date>2007-03-22T19:58:27Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705756#M1012649</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ok so is ISP doing natting on their router ?&lt;/P&gt;&lt;P&gt;if not then they have to...also from our side you need to make sure the request is passing through the firewall&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;add the line access-l acl_in permit icmp any any try pinging the gateway of the firewall from any inside machine, if you are able to ping that means the FW is passing the traffic and its your router not routing it further..&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:07:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705756#M1012649</guid>
      <dc:creator>abinjola</dc:creator>
      <dc:date>2007-03-22T20:07:40Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705757#M1012651</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Correct.&lt;/P&gt;&lt;P&gt;I havn't placed the firewall in the mix yet, I was just looking for a second pair of eyes to look at my config (original post) to see if it seemed OK...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:13:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705757#M1012651</guid>
      <dc:creator>srberg5219</dc:creator>
      <dc:date>2007-03-22T20:13:33Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705758#M1012652</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Like I said about 10 posts ago...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;are my posts showing up?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:14:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705758#M1012652</guid>
      <dc:creator>acomiskey</dc:creator>
      <dc:date>2007-03-22T20:14:55Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705759#M1012653</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;heyy acomiskey..chill..:-)..yes your posts are showing up..very bright n clear..:-)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:16:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705759#M1012653</guid>
      <dc:creator>abinjola</dc:creator>
      <dc:date>2007-03-22T20:16:21Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705760#M1012654</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;yes your firewall config looks good on FW..we can help you with router if you have an access of it as well&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:17:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705760#M1012654</guid>
      <dc:creator>abinjola</dc:creator>
      <dc:date>2007-03-22T20:17:29Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705761#M1012656</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm chill, just seems like a broken record that's all...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:19:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705761#M1012656</guid>
      <dc:creator>acomiskey</dc:creator>
      <dc:date>2007-03-22T20:19:19Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705762#M1012657</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry, I didn't get into managed firewall appliances until about a week ago and I am in my 40's so things don't sink in quite as well as they did when I was in my 20's...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:21:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705762#M1012657</guid>
      <dc:creator>srberg5219</dc:creator>
      <dc:date>2007-03-22T20:21:12Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705763#M1012658</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No, not you, it seemed like everything I said was just getting repeated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyway, it's cool, we're all here just trying to help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:23:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705763#M1012658</guid>
      <dc:creator>acomiskey</dc:creator>
      <dc:date>2007-03-22T20:23:46Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705764#M1012659</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Which, by the way, I do not take for granted and I appreciate more than I can say...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:27:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705764#M1012659</guid>
      <dc:creator>srberg5219</dc:creator>
      <dc:date>2007-03-22T20:27:47Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705765#M1012661</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok, as abinjola and I were trying to say, there are a few things you need to figure out. The most major of which I would say is where do you want to NAT?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:32:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705765#M1012661</guid>
      <dc:creator>acomiskey</dc:creator>
      <dc:date>2007-03-22T20:32:40Z</dc:date>
    </item>
    <item>
      <title>Re: 506 Config</title>
      <link>https://community.cisco.com/t5/network-security/506-config/m-p/705766#M1012662</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;do you have the router access,?  so that we check if the router is configured for natting&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope i am making sense that the router needs to further PAT or NAT the traffic (to a public ip )coming out of the firewall private outside IP &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the fw config looks good..&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Mar 2007 20:33:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/506-config/m-p/705766#M1012662</guid>
      <dc:creator>abinjola</dc:creator>
      <dc:date>2007-03-22T20:33:28Z</dc:date>
    </item>
  </channel>
</rss>

