<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX 515E question in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239202#M594189</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;no, it is&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http 192.168.1.1 255.255.255.255 inside. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;use https only on the browser. &lt;/P&gt;&lt;P&gt;sorry for the previous posting.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 11 Mar 2004 08:02:39 GMT</pubDate>
    <dc:creator>tgshahrizam</dc:creator>
    <dc:date>2004-03-11T08:02:39Z</dc:date>
    <item>
      <title>PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239187#M594168</link>
      <description>&lt;P&gt;Dear all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;  We have just bought a PIX 515E and try to use it but got a few issues. Here is the show ver:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX-151E#show version&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco PIX Firewall Version 6.3(1)&lt;/P&gt;&lt;P&gt;Cisco PIX Device Manager Version 3.0(1)&lt;/P&gt;&lt;P&gt;Compiled on Wed 19-Mar-03 11:49 by morlee&lt;/P&gt;&lt;P&gt;PIX-515E up 5 hours 15 mins&lt;/P&gt;&lt;P&gt;Hardware:   PIX-515E, 64 MB RAM, CPU Pentium II 433 MHz&lt;/P&gt;&lt;P&gt;Flash E28F128J3 @ 0x300, 16MB&lt;/P&gt;&lt;P&gt;BIOS Flash AM29F400B @ 0xfffd8000, 32KB&lt;/P&gt;&lt;P&gt;0: ethernet0: address is 000f.2457.4b12, irq 10&lt;/P&gt;&lt;P&gt;1: ethernet1: address is 000f.2457.4b13, irq 11&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Licensed Features:&lt;/P&gt;&lt;P&gt;Failover:           Enabled&lt;/P&gt;&lt;P&gt;VPN-DES:            Enabled&lt;/P&gt;&lt;P&gt;VPN-3DES-AES:       Enabled&lt;/P&gt;&lt;P&gt;Maximum Interfaces: 6&lt;/P&gt;&lt;P&gt;Cut-through Proxy:  Enabled&lt;/P&gt;&lt;P&gt;Guards:             Enabled&lt;/P&gt;&lt;P&gt;URL-filtering:      Enabled&lt;/P&gt;&lt;P&gt;Inside Hosts:       Unlimited&lt;/P&gt;&lt;P&gt;Throughput:         Unlimited          IKE peers:          Unlimited&lt;/P&gt;&lt;P&gt;              &lt;/P&gt;&lt;P&gt;This PIX has a Failover Only (FO) license.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Problem is we cannot ping the Inside port if we do not turn on failover but this is single machine. Here is another message after we turn on Failover:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX-515E# config t&lt;/P&gt;&lt;P&gt;**** WARNING ***&lt;/P&gt;&lt;P&gt;        Configuration Replication is NOT performed from Standby unit to Active unit.&lt;/P&gt;&lt;P&gt;        Configurations are no longer synchronized.&lt;/P&gt;&lt;P&gt;PIX-515E(config)#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please help to resolve this issue. Wonder if we purchase the wrong license ? Thanks a lot.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 07:16:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239187#M594168</guid>
      <dc:creator>duc-vu</dc:creator>
      <dc:date>2020-02-21T07:16:35Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239188#M594169</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;also another question : we thought the PDM should come free with this unit ? or it an option ? Thanks for help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Mar 2004 07:33:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239188#M594169</guid>
      <dc:creator>duc-vu</dc:creator>
      <dc:date>2004-03-05T07:33:56Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239189#M594170</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;never mind about stupid question on PDM. Please help with the first question. Thank you very much.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Mar 2004 07:36:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239189#M594170</guid>
      <dc:creator>duc-vu</dc:creator>
      <dc:date>2004-03-05T07:36:24Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239190#M594171</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please post your "show run" contents.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Mar 2004 07:40:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239190#M594171</guid>
      <dc:creator>tgshahrizam</dc:creator>
      <dc:date>2004-03-05T07:40:28Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239191#M594172</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you have in your possession a failover PIX. That is why is says so in the "sh run".&lt;/P&gt;&lt;P&gt;This device is meant to be used only as the failover device for live one. It will run as a live PIX but will behave badly. It is cheaper than a PIX with an Unrestricted License, as it is not meant to be used as a stand-alone device. Check with whoever you purchased it from to get the situation sorted.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good luck&lt;/P&gt;&lt;P&gt;Steve&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Mar 2004 13:41:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239191#M594172</guid>
      <dc:creator>steven.wilson</dc:creator>
      <dc:date>2004-03-05T13:41:03Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239192#M594173</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here it is:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX-515E# show run&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;PIX Version 6.3(1)&lt;/P&gt;&lt;P&gt;interface ethernet0 auto&lt;/P&gt;&lt;P&gt;interface ethernet1 auto&lt;/P&gt;&lt;P&gt;nameif ethernet0 outside security0&lt;/P&gt;&lt;P&gt;nameif ethernet1 inside security100&lt;/P&gt;&lt;P&gt;enable password xxxx&lt;/P&gt;&lt;P&gt;passwd xxxxx&lt;/P&gt;&lt;P&gt;hostname PIX-515E&lt;/P&gt;&lt;P&gt;fixup protocol ftp 21&lt;/P&gt;&lt;P&gt;fixup protocol h323 h225 1720&lt;/P&gt;&lt;P&gt;fixup protocol h323 ras 1718-1719&lt;/P&gt;&lt;P&gt;fixup protocol http 80&lt;/P&gt;&lt;P&gt;fixup protocol ils 389&lt;/P&gt;&lt;P&gt;fixup protocol rsh 514&lt;/P&gt;&lt;P&gt;fixup protocol rtsp 554&lt;/P&gt;&lt;P&gt;fixup protocol sip 5060&lt;/P&gt;&lt;P&gt;fixup protocol sip udp 5060&lt;/P&gt;&lt;P&gt;fixup protocol skinny 2000&lt;/P&gt;&lt;P&gt;fixup protocol smtp 25&lt;/P&gt;&lt;P&gt;fixup protocol sqlnet 1521&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;pager lines 24            mtu outside 1500&lt;/P&gt;&lt;P&gt;mtu inside 1500 ip address outside 192.168.27.1 255.255.255.0&lt;/P&gt;&lt;P&gt;ip address inside 192.168.1.1 255.255.255.0 ip audit info action alarm ip audit attack action alarm&lt;/P&gt;&lt;P&gt;no failover failover timeout 0:00:00 failover poll 15&lt;/P&gt;&lt;P&gt;no failover ip address outside no failover ip address inside pdm location 192.168.1.0 255.255.255.0 inside pdm history enable arp timeout 14400 route inside 0.0.0.0 0.0.0.0 192.168.27.2 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00 timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00&lt;/P&gt;&lt;P&gt;timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00 timeout uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+  aaa-server RADIUS protocol radius &lt;/P&gt;&lt;P&gt;aaa-server LOCAL protocol local  no snmp-server location no snmp-server contact               snmp-server community public no snmp-server enable traps floodguard enable&lt;/P&gt;&lt;P&gt;telnet timeout 5 ssh timeout 5 console timeout 0&lt;/P&gt;&lt;P&gt;terminal width 80 Cryptochecksum:xxxxxx : end &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you very much, Sir.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Mar 2004 14:04:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239192#M594173</guid>
      <dc:creator>duc-vu</dc:creator>
      <dc:date>2004-03-05T14:04:13Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239193#M594174</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you very much, Sir. I thought so that we got a wrong license PIX.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Mar 2004 14:06:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239193#M594174</guid>
      <dc:creator>duc-vu</dc:creator>
      <dc:date>2004-03-05T14:06:21Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239194#M594176</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;One more question, please. Do I need to config in PIX515E in order to activate the PDM ? could not use http to do web config. Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 08 Mar 2004 09:58:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239194#M594176</guid>
      <dc:creator>duc-vu</dc:creator>
      <dc:date>2004-03-08T09:58:20Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239195#M594178</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;to access the PIX using the PDM there are three things that you need to do. &lt;/P&gt;&lt;P&gt;1st PDM LOCATION COMMAND&lt;/P&gt;&lt;P&gt;2nd HTTP SERVER COMMAND&lt;/P&gt;&lt;P&gt;3rd access the PIX by HTTPS on the inside is safest.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Some people like the PDM and some people prefer the command line. If you really want to understand the working of the device program it using the PDM and then look at the lines created via the command line. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have fun&lt;/P&gt;&lt;P&gt;Steve&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Mar 2004 12:48:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239195#M594178</guid>
      <dc:creator>steven.wilson</dc:creator>
      <dc:date>2004-03-09T12:48:25Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239196#M594180</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Steve,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;  Please elaborate a little more about :&lt;/P&gt;&lt;P&gt;1st PDM LOCATION COMMAND &lt;/P&gt;&lt;P&gt;2nd HTTP SERVER COMMAND &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Exactly what I should do ? Thank you very much.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Mar 2004 01:29:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239196#M594180</guid>
      <dc:creator>duc-vu</dc:creator>
      <dc:date>2004-03-10T01:29:50Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239197#M594181</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1.PDM LOCATION tells the firewall what host is able to access PDM&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. HTTP SERVER enables http access to the firewall form the ip adress of the network or host specified. Eg: http 10.1.1.0 255.255.255.0 inside or http 10.1.1.1 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PDM location can be detected by the firewall automatically. So, the most important command is the http server and do not forget to use https in the browser instead of http. Eg; &lt;A class="jive-link-custom" href="https://10.1.1.254" target="_blank"&gt;https://10.1.1.254&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Mar 2004 07:04:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239197#M594181</guid>
      <dc:creator>tgshahrizam</dc:creator>
      <dc:date>2004-03-10T07:04:54Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239198#M594182</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;For the record, #1 above is *not* correct.  Here is some text that was previously posted regarding the PDM location commands:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A PDM location is a pure book keeping command used by PDM to build its topology database.  It has nothing to do with the PIX's functionalities. In particular, it does **NOT** control which host can access PDM which is a common misunderstanding.  The control is done by the command "http &lt;IP&gt; &lt;MASK&gt; &lt;INTERFACE&gt;". &lt;/INTERFACE&gt;&lt;/MASK&gt;&lt;/IP&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Why do we need it? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In PDM's world, policy (those rules) is built on top of topology.  Ideally user creates the topology first via the Host/Network tab, then configures policy else where (like Access Rule tab). A network object exists by itself, even if there is no policy configured directly on it at a particular time. We use "pdm location" command to remember the location &lt;/P&gt;&lt;P&gt;of a network object. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Mar 2004 13:54:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239198#M594182</guid>
      <dc:creator>scoclayton</dc:creator>
      <dc:date>2004-03-10T13:54:08Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239199#M594184</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you, gentlemen for your great help. In short, all I need is one command : http 192.168.1.0 255.255.255.0 ethernet0 (for example).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Mar 2004 01:27:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239199#M594184</guid>
      <dc:creator>duc-vu</dc:creator>
      <dc:date>2004-03-11T01:27:39Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239200#M594186</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry : https 192.168.1.1 255.255.255.255 inside.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Mar 2004 01:30:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239200#M594186</guid>
      <dc:creator>duc-vu</dc:creator>
      <dc:date>2004-03-11T01:30:54Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239201#M594187</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;no, it is &lt;A class="jive-link-custom" href="http://192.168.1.1" target="_blank"&gt;http://192.168.1.1&lt;/A&gt; 255.255.255.255 inside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;use https only on the browser.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Mar 2004 08:01:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239201#M594187</guid>
      <dc:creator>tgshahrizam</dc:creator>
      <dc:date>2004-03-11T08:01:16Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E question</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239202#M594189</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;no, it is&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http 192.168.1.1 255.255.255.255 inside. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;use https only on the browser. &lt;/P&gt;&lt;P&gt;sorry for the previous posting.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Mar 2004 08:02:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-question/m-p/239202#M594189</guid>
      <dc:creator>tgshahrizam</dc:creator>
      <dc:date>2004-03-11T08:02:39Z</dc:date>
    </item>
  </channel>
</rss>

