<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Contivity Client behind pix firewall in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/contivity-client-behind-pix-firewall/m-p/298649#M593102</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;How are you trying to connect to the firewall at work?  IPSec vpn between your workstation at home and the corp. firewall (Contivity), IPSec between PIX and Contivity, pptp, or ssl?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you use IPSec and the pix is not the termination point, then you need to allow udp port 500 (both src and dest ports are eq to 500), esp.  You many need to allow the ah protocol as well.  So you need to code at least 2 if not 3 statements in an acl and bind that to the outside interface of the pix.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 27 Apr 2004 16:01:18 GMT</pubDate>
    <dc:creator>ehirsel</dc:creator>
    <dc:date>2004-04-27T16:01:18Z</dc:date>
    <item>
      <title>Contivity Client behind pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/contivity-client-behind-pix-firewall/m-p/298647#M593099</link>
      <description>&lt;P&gt;Running version 6.3(3) on a pix 501 firewall connecting to the internet using pppoe and I'm having trouble getting connected to my firewall at work (Contivity firewall) through my pix firewall.  Can someone help me out with this one?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 07:21:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/contivity-client-behind-pix-firewall/m-p/298647#M593099</guid>
      <dc:creator>cobbc</dc:creator>
      <dc:date>2020-02-21T07:21:56Z</dc:date>
    </item>
    <item>
      <title>Re: Contivity Client behind pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/contivity-client-behind-pix-firewall/m-p/298648#M593101</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;your best bet is to log everything, and see what it is doing. darn near every vpn client can do some weird proprietary things.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 26 Apr 2004 12:52:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/contivity-client-behind-pix-firewall/m-p/298648#M593101</guid>
      <dc:creator>mostiguy</dc:creator>
      <dc:date>2004-04-26T12:52:10Z</dc:date>
    </item>
    <item>
      <title>Re: Contivity Client behind pix firewall</title>
      <link>https://community.cisco.com/t5/network-security/contivity-client-behind-pix-firewall/m-p/298649#M593102</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;How are you trying to connect to the firewall at work?  IPSec vpn between your workstation at home and the corp. firewall (Contivity), IPSec between PIX and Contivity, pptp, or ssl?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you use IPSec and the pix is not the termination point, then you need to allow udp port 500 (both src and dest ports are eq to 500), esp.  You many need to allow the ah protocol as well.  So you need to code at least 2 if not 3 statements in an acl and bind that to the outside interface of the pix.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Apr 2004 16:01:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/contivity-client-behind-pix-firewall/m-p/298649#M593102</guid>
      <dc:creator>ehirsel</dc:creator>
      <dc:date>2004-04-27T16:01:18Z</dc:date>
    </item>
  </channel>
</rss>

