<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: configuring pix firewall in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443220#M529527</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I m bit puzzled about the original post and the config pasted here.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you have got a PIX firewall connecting to the local ISP.&lt;/P&gt;&lt;P&gt;you have a local LAN behind that and you want to enable access to the internet for the local lan ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is that the scenario u r tyring or planning to have out there ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The configs posted here clearly tells that you trying to allow PPTP connections to ur PIX from the remote locations..is that the scneario you are trying out there ??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regds&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 15 Dec 2005 13:52:51 GMT</pubDate>
    <dc:creator>spremkumar</dc:creator>
    <dc:date>2005-12-15T13:52:51Z</dc:date>
    <item>
      <title>configuring pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443217#M529524</link>
      <description>&lt;P&gt;Hello everybody. I need help &lt;/P&gt;&lt;P&gt;I have taken connection from ISP the ISP provided us VERILINK router our internet is working fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have purchased Pix firewall i would like to use PIX firewall on my network. Can anyone provide me the configuration to connect to the internet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please note: PPPoe authentication is not required for this network. Because the cable is directly comming from the ISP. My current location is Australia.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please reply asap. &lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 08:35:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443217#M529524</guid>
      <dc:creator>ciscomoon</dc:creator>
      <dc:date>2020-02-21T08:35:46Z</dc:date>
    </item>
    <item>
      <title>Re: configuring pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443218#M529525</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Which PIX F/W model you have got for your network over there ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are you gonna directly connect the link from SP and assign a static ip to the PIX outside interface ??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i would suggest to refer these links to get started...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094768.shtml" target="_blank"&gt;http://cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094768.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://cisco.com/en/US/products/hw/vpndevc/ps2030/prod_configuration_examples_list.html" target="_blank"&gt;http://cisco.com/en/US/products/hw/vpndevc/ps2030/prod_configuration_examples_list.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regds&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 Dec 2005 12:54:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443218#M529525</guid>
      <dc:creator>spremkumar</dc:creator>
      <dc:date>2005-12-15T12:54:49Z</dc:date>
    </item>
    <item>
      <title>Re: configuring pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443219#M529526</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Cable directly comming from the ISP &lt;/P&gt;&lt;P&gt;Pix version: 6.3(4)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;====================================================&lt;/P&gt;&lt;P&gt;Currently Using the below config but not connecting to the internet&lt;/P&gt;&lt;P&gt;====================================================&lt;/P&gt;&lt;P&gt;vpdn group VPN accept dialin pptp&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp authentication mschap&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp encryption mppe 40&lt;/P&gt;&lt;P&gt;vpdn group VPN client configuration address local VPNPool&lt;/P&gt;&lt;P&gt;vpdn group VPN pptp echo 60&lt;/P&gt;&lt;P&gt;vpdn group VPN client authentication local&lt;/P&gt;&lt;P&gt;=====================================================&lt;/P&gt;&lt;P&gt;Any Suggestions&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 Dec 2005 13:04:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443219#M529526</guid>
      <dc:creator>ciscomoon</dc:creator>
      <dc:date>2005-12-15T13:04:16Z</dc:date>
    </item>
    <item>
      <title>Re: configuring pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443220#M529527</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I m bit puzzled about the original post and the config pasted here.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you have got a PIX firewall connecting to the local ISP.&lt;/P&gt;&lt;P&gt;you have a local LAN behind that and you want to enable access to the internet for the local lan ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is that the scenario u r tyring or planning to have out there ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The configs posted here clearly tells that you trying to allow PPTP connections to ur PIX from the remote locations..is that the scneario you are trying out there ??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regds&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 Dec 2005 13:52:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443220#M529527</guid>
      <dc:creator>spremkumar</dc:creator>
      <dc:date>2005-12-15T13:52:51Z</dc:date>
    </item>
    <item>
      <title>Re: configuring pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443221#M529528</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I oplogise i posted the wrong command.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 Dec 2005 13:59:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443221#M529528</guid>
      <dc:creator>ciscomoon</dc:creator>
      <dc:date>2005-12-15T13:59:12Z</dc:date>
    </item>
    <item>
      <title>Re: configuring pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443222#M529529</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;not sure what the issue is.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you mentioned the isp-link can be directly connected to the pix outside interface. so you can issue the command "ip address outside x.x.x.x 255.255.255.x" etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if further assistance is needed, please post the entire config with public ip masked.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Dec 2005 00:55:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443222#M529529</guid>
      <dc:creator>jackko</dc:creator>
      <dc:date>2005-12-16T00:55:05Z</dc:date>
    </item>
    <item>
      <title>Re: configuring pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443223#M529530</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Firstly thanks for helping. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have tried it didnt work. &lt;/P&gt;&lt;P&gt;I have spoken to ISP they have provided following information. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. 2 public IP (1 Public IP is for ISP router-61.29.12.xx and another public IP is for PIX-61.29.30.xx default gateway 61.29.30.xxx) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. The ISP also asking to configure default gateway in PIX &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;==================================================== &lt;/P&gt;&lt;P&gt;Here is the current config &lt;/P&gt;&lt;P&gt;==================================================== &lt;/P&gt;&lt;P&gt;PIX Version 6.3(4) &lt;/P&gt;&lt;P&gt;interface ethernet0 auto shutdown &lt;/P&gt;&lt;P&gt;interface ethernet1 auto &lt;/P&gt;&lt;P&gt;nameif ethernet0 outside security0 &lt;/P&gt;&lt;P&gt;nameif ethernet1 inside security100 &lt;/P&gt;&lt;P&gt;enable password xxxx &lt;/P&gt;&lt;P&gt;passwd xxxx &lt;/P&gt;&lt;P&gt;hostname rafay &lt;/P&gt;&lt;P&gt;domain-name wasay &lt;/P&gt;&lt;P&gt;fixup protocol dns maximum-length 512 &lt;/P&gt;&lt;P&gt;fixup protocol ftp 21 &lt;/P&gt;&lt;P&gt;fixup protocol h323 h225 1720 &lt;/P&gt;&lt;P&gt;fixup protocol h323 ras 1718-1719 &lt;/P&gt;&lt;P&gt;fixup protocol http 80 &lt;/P&gt;&lt;P&gt;fixup protocol rsh 514 &lt;/P&gt;&lt;P&gt;fixup protocol rtsp 554 &lt;/P&gt;&lt;P&gt;fixup protocol sip 5060 &lt;/P&gt;&lt;P&gt;fixup protocol sip udp 5060 &lt;/P&gt;&lt;P&gt;fixup protocol skinny 2000 &lt;/P&gt;&lt;P&gt;fixup protocol smtp 25 &lt;/P&gt;&lt;P&gt;fixup protocol sqlnet 1521 &lt;/P&gt;&lt;P&gt;fixup protocol tftp 69 &lt;/P&gt;&lt;P&gt;names &lt;/P&gt;&lt;P&gt;pager lines 24 &lt;/P&gt;&lt;P&gt;mtu outside 1500 &lt;/P&gt;&lt;P&gt;mtu inside 1500 &lt;/P&gt;&lt;P&gt;ip address outside 61.29.3x.xx 255.255.255.252 &lt;/P&gt;&lt;P&gt;ip address inside 192.168.2.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;ip audit info action alarm &lt;/P&gt;&lt;P&gt;ip audit attack action alarm &lt;/P&gt;&lt;P&gt;no failover &lt;/P&gt;&lt;P&gt;failover timeout 0:00:00 &lt;/P&gt;&lt;P&gt;failover poll 15 &lt;/P&gt;&lt;P&gt;no failover ip address outside &lt;/P&gt;&lt;P&gt;no failover ip address inside &lt;/P&gt;&lt;P&gt;pdm history enable &lt;/P&gt;&lt;P&gt;arp timeout 14400 &lt;/P&gt;&lt;P&gt;global (outside) 1 interface &lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0 0 0 &lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 61.29.12.xx 1 &lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00 &lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00 &lt;/P&gt;&lt;P&gt;timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00 &lt;/P&gt;&lt;P&gt;timeout uauth 0:05:00 absolute &lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;aaa-server TACACS+ max-failed-attempts 3 &lt;/P&gt;&lt;P&gt;aaa-server TACACS+ deadtime 10 &lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius &lt;/P&gt;&lt;P&gt;aaa-server RADIUS max-failed-attempts 3 &lt;/P&gt;&lt;P&gt;aaa-server RADIUS deadtime 10 &lt;/P&gt;&lt;P&gt;aaa-server LOCAL protocol local &lt;/P&gt;&lt;P&gt;http server enable &lt;/P&gt;&lt;P&gt;http 192.168.2.254 255.255.255.255 inside &lt;/P&gt;&lt;P&gt;no snmp-server location &lt;/P&gt;&lt;P&gt;no snmp-server contact &lt;/P&gt;&lt;P&gt;snmp-server community public &lt;/P&gt;&lt;P&gt;no snmp-server enable traps &lt;/P&gt;&lt;P&gt;floodguard enable &lt;/P&gt;&lt;P&gt;telnet timeout 5 &lt;/P&gt;&lt;P&gt;ssh timeout 5 &lt;/P&gt;&lt;P&gt;console timeout 0 &lt;/P&gt;&lt;P&gt;terminal width 80 &lt;/P&gt;&lt;P&gt;Cryptochecksum:xxxx &lt;/P&gt;&lt;P&gt;: end &lt;/P&gt;&lt;P&gt;rafay(config)# &lt;/P&gt;&lt;P&gt;==================================================== &lt;/P&gt;&lt;P&gt;I am not connecting to the internet via PIX &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Dec 2005 10:28:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443223#M529530</guid>
      <dc:creator>ciscomoon</dc:creator>
      <dc:date>2005-12-16T10:28:13Z</dc:date>
    </item>
    <item>
      <title>Re: configuring pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443224#M529531</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you still having issues?  To clarify you have the following setup?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ISP Router&lt;/P&gt;&lt;P&gt;61.29.12.xx &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Want to ADD PIX&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;LAN (current working internet usage) without PIX&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How is the PIX connected to ISP router?&lt;/P&gt;&lt;P&gt;How is the LAN connected to the PIX?&lt;/P&gt;&lt;P&gt;What Default Gateway/Proxy server address are you using?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Dec 2005 19:11:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configuring-pix-firewall/m-p/443224#M529531</guid>
      <dc:creator>sdwilliams2005</dc:creator>
      <dc:date>2005-12-27T19:11:28Z</dc:date>
    </item>
  </channel>
</rss>

