<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Pix 515e unrestricted in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272654#M595457</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ward,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In that case it looks to me as you need to regenerate the public/private key.&lt;/P&gt;&lt;P&gt;Please execute the following commands:&lt;/P&gt;&lt;P&gt; ca zero rsa &lt;/P&gt;&lt;P&gt; ca gen rsa key 512 &lt;/P&gt;&lt;P&gt; ca save all&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After this please try again, but I'm pretty sure this will help you out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;kind regards,&lt;/P&gt;&lt;P&gt;Leo&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 20 Jan 2004 14:51:56 GMT</pubDate>
    <dc:creator>l.mourits</dc:creator>
    <dc:date>2004-01-20T14:51:56Z</dc:date>
    <item>
      <title>Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272640#M595418</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just started up my pix and changed the outside address.Tried to access the pdm via the browser,but cannot.Any guidance would be much appreciated.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 07:11:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272640#M595418</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2020-02-21T07:11:31Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272641#M595420</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You'll need to enable http server on the PIX.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In config mode on PIX do:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;gt; http server enable&lt;/P&gt;&lt;P&gt;&amp;gt; http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(Ofcourse change the above IP to yours)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now open up IE browser and type:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;gt; &lt;A class="jive-link-custom" href="https://" target="_blank"&gt;https://&lt;/A&gt;&lt;INSIDE_IP_ADDRESS_OF_PIX&gt;&lt;/INSIDE_IP_ADDRESS_OF_PIX&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you see the username and password box pop-up in IE browser just type the pix password (no need for username)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps and Please rate this post if it helps you out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks -&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 12 Jan 2004 17:01:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272641#M595420</guid>
      <dc:creator>jmia</dc:creator>
      <dc:date>2004-01-12T17:01:27Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272642#M595422</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the help.I can get as far as the Cisc pix PDM manager loading...It has an egg timer that just sits there.I waited  for 5 minutes but it is still not coming up with anything further.&lt;/P&gt;&lt;P&gt;It says Loading pix device manager....please wait&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can anyone advise please?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 14 Jan 2004 17:15:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272642#M595422</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-14T17:15:52Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272643#M595424</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;can anyone advise on this please.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 Jan 2004 09:45:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272643#M595424</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-15T09:45:18Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272644#M595429</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you getting a pop-up window that ask if you want to install and run Cisco PIX device mananger?  That is the next phase.  If you are not seeing this it could be a permissions issue on your workstation or I have seen some pop-up blockers kill this as well.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please remember to rate any post that helps you out.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 Jan 2004 12:52:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272644#M595429</guid>
      <dc:creator>travis-dennis_2</dc:creator>
      <dc:date>2004-01-15T12:52:34Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272645#M595431</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yeah I am getting this message coming up.&lt;/P&gt;&lt;P&gt;It keeps saying please wait and just sits there.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It comes up saying the certificate information and then it says do you want to proceed.&lt;/P&gt;&lt;P&gt;I then click yes and it comes up with username and password.I dont have one set so i press enter.&lt;/P&gt;&lt;P&gt;I then get a popup window that says LOADING PIX DEVICE MANAGER please wait......&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It just there.I cant get any further. much appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help would be&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Jan 2004 12:31:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272645#M595431</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-16T12:31:55Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272646#M595434</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The only thing that looks out of the ordinary is this startup certiticate message.Could this be the problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When i put in &lt;A class="jive-link-custom" href="https://10.98.7.250" target="_blank"&gt;https://10.98.7.250&lt;/A&gt; in the browser&lt;/P&gt;&lt;P&gt;it then comes up with the message below. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The information you exchange with this site cannot be viewed or changed by others.&lt;/P&gt;&lt;P&gt;However there is a problem with the sites security certificate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;! The security certificate was issued by a company you have not chosen to trust&lt;/P&gt;&lt;P&gt;! The security certificate has expiredor is not yet valid.&lt;/P&gt;&lt;P&gt;! The name on the security certificate is invalid or does not match the name of the site.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Jan 2004 12:41:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272646#M595434</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-16T12:41:45Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272647#M595436</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can anyone advise?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Jan 2004 15:49:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272647#M595436</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-16T15:49:40Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272648#M595438</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you have a DES or 3DES key installed on you PIX. This key is required for PDM. If do not have this key Cisco will provide you with a new DES key for free. You will find this information with "show version" command.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Jan 2004 20:57:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272648#M595438</guid>
      <dc:creator>mpalardy</dc:creator>
      <dc:date>2004-01-16T20:57:14Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272649#M595443</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ward,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You should check on CCO on the supported browsers and the requirements of your browser. Sounds to me like not having a correct encryption level, some old version browser or java runtime environment. Check these things first before checking anything else.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You are using no username and the enable secret as the password on the PDM authentication popup?&lt;/P&gt;&lt;P&gt;You do have configured an enable secret. Otherwise I think PDM won´t be able to authenticate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If all this is not of any help, there´s one other thing you could try, and that is regenerating the rsa key. There should be a procedure described on CCO, otherwise search the frum within this group, cause a few months ago the procedure was posted here. But regenerating the rsa key is rarely needed, so, I advise you to first check on the other things mentioned.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good luck and kind regards,&lt;/P&gt;&lt;P&gt;Leo&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Jan 2004 22:20:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272649#M595443</guid>
      <dc:creator>l.mourits</dc:creator>
      <dc:date>2004-01-16T22:20:53Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272650#M595447</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi there&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please see my config and show version below.&lt;/P&gt;&lt;P&gt;All I have changed on the pix is the inside ip address,clock and added in the username and password.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i am running java 1.4.1_02 which is correct for internet explorer 6.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After typing the username and password I dont get prompted for it when I try get into pdm via the browser.It just comes up witht he pretty cisco picture saying PDM manager is loading...Please wait...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is so frustrating.Please see the config and show version below&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NLONL02FIREWALL# sho run&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;PIX Version 6.3(1)&lt;/P&gt;&lt;P&gt;interface ethernet0 auto shutdown&lt;/P&gt;&lt;P&gt;interface ethernet1 auto&lt;/P&gt;&lt;P&gt;nameif ethernet0 outside security0&lt;/P&gt;&lt;P&gt;nameif ethernet1 inside security100&lt;/P&gt;&lt;P&gt;enable password Be5nymj6ciY8kJol encrypted&lt;/P&gt;&lt;P&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;/P&gt;&lt;P&gt;hostname NLONL02FIREWALL&lt;/P&gt;&lt;P&gt;domain-name lon.flitech.net&lt;/P&gt;&lt;P&gt;fixup protocol ftp 21&lt;/P&gt;&lt;P&gt;fixup protocol h323 h225 1720&lt;/P&gt;&lt;P&gt;fixup protocol h323 ras 1718-1719&lt;/P&gt;&lt;P&gt;fixup protocol http 80&lt;/P&gt;&lt;P&gt;fixup protocol ils 389&lt;/P&gt;&lt;P&gt;fixup protocol rsh 514&lt;/P&gt;&lt;P&gt;fixup protocol rtsp 554&lt;/P&gt;&lt;P&gt;fixup protocol sip 5060&lt;/P&gt;&lt;P&gt;fixup protocol sip udp 5060&lt;/P&gt;&lt;P&gt;fixup protocol skinny 2000&lt;/P&gt;&lt;P&gt;fixup protocol smtp 25&lt;/P&gt;&lt;P&gt;fixup protocol sqlnet 1521&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;no ip address outside&lt;/P&gt;&lt;P&gt;ip address inside 10.98.7.250 255.255.248.0&lt;/P&gt;&lt;P&gt;ip audit info action alarm&lt;/P&gt;&lt;P&gt;ip audit attack action alarm&lt;/P&gt;&lt;P&gt;no failover&lt;/P&gt;&lt;P&gt;failover timeout 0:00:00&lt;/P&gt;&lt;P&gt;failover poll 15&lt;/P&gt;&lt;P&gt;no failover ip address outside&lt;/P&gt;&lt;P&gt;no failover ip address inside&lt;/P&gt;&lt;P&gt;pdm history enable&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00&lt;/P&gt;&lt;P&gt;timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00&lt;/P&gt;&lt;P&gt;timeout uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius &lt;/P&gt;&lt;P&gt;aaa-server LOCAL protocol local &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 10.98.7.2 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;http 10.98.0.0 255.255.248.0 inside&lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;snmp-server community public&lt;/P&gt;&lt;P&gt;no snmp-server enable traps&lt;/P&gt;&lt;P&gt;floodguard enable&lt;/P&gt;&lt;P&gt;telnet timeout 5&lt;/P&gt;&lt;P&gt;ssh timeout 5&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;username thgilf password D467B2.MngTyAEZY encrypted privilege 2&lt;/P&gt;&lt;P&gt;terminal width 80&lt;/P&gt;&lt;P&gt;Cryptochecksum:384e1453437cfe00e9f28ab416c4c44b&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;&lt;P&gt;NLONL02FIREWALL# sho version&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco PIX Firewall Version 6.3(1)&lt;/P&gt;&lt;P&gt;Cisco PIX Device Manager Version 3.0(1)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Compiled on Wed 19-Mar-03 11:49 by morlee&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NLONL02FIREWALL up 46 secs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hardware:   PIX-515E, 64 MB RAM, CPU Pentium II 433 MHz&lt;/P&gt;&lt;P&gt;Flash E28F128J3 @ 0x300, 16MB&lt;/P&gt;&lt;P&gt;BIOS Flash AM29F400B @ 0xfffd8000, 32KB&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Encryption hardware device : Crypto5823 (revision 0x1)&lt;/P&gt;&lt;P&gt;0: ethernet0: address is 000e.833e.ee8b, irq 10&lt;/P&gt;&lt;P&gt;1: ethernet1: address is 000e.833e.ee8c, irq 11&lt;/P&gt;&lt;P&gt;Licensed Features:&lt;/P&gt;&lt;P&gt;Failover:           Enabled&lt;/P&gt;&lt;P&gt;VPN-DES:            Enabled&lt;/P&gt;&lt;P&gt;VPN-3DES-AES:       Disabled&lt;/P&gt;&lt;P&gt;Maximum Interfaces: 6&lt;/P&gt;&lt;P&gt;Cut-through Proxy:  Enabled&lt;/P&gt;&lt;P&gt;Guards:             Enabled&lt;/P&gt;&lt;P&gt;URL-filtering:      Enabled&lt;/P&gt;&lt;P&gt;Inside Hosts:       Unlimited&lt;/P&gt;&lt;P&gt;Throughput:         Unlimited&lt;/P&gt;&lt;P&gt;IKE peers:          Unlimited&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This PIX has an Unrestricted (UR) license.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Serial Number: 806263072 (0x300e9920)&lt;/P&gt;&lt;P&gt;Running Activation Key: 0xed6cddef 0x4c4d4350 0xa3e2a0d9 0x4145f7ad &lt;/P&gt;&lt;P&gt;Configuration last modified by enable_15 at 00:00:10.920 UTC Fri Jan 1 1993&lt;/P&gt;&lt;P&gt;NLONL02FIREWALL# &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for all you help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Jan 2004 13:59:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272650#M595447</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-19T13:59:34Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272651#M595450</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can anybody help with this?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Jan 2004 17:23:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272651#M595450</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-19T17:23:48Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272652#M595453</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ward,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First I want to state that next time when you post your config, it would be better to remove the passwords..., allthough they are encrypted, the encryption is weak, and there are tools available to break them..... (but don´t worry, normally the moderators of this forum will edit your meaasge soon)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This said I have a few questions for you?&lt;/P&gt;&lt;P&gt;Have you tried just entering the enable password with no username (on the username/password box which is prompted)?&lt;/P&gt;&lt;P&gt;If not, please do so. This will give you access to PDM. There is no need to configure a username and password first.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Bytheway, I think you need to configure pdm location &lt;IPADDRESS&gt; &lt;SUBNETMASK&gt; as well for the PC where you want to connect from.&lt;/SUBNETMASK&gt;&lt;/IPADDRESS&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to use usernames and passwords to give different users different privilige levels (which I think you want, assuming this while looking at parts of your config), then you need a lot more config like setting the privilige levels, setting what to authenticate and what not, and stuff like that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But first try it the easy way, let´s start simple, just enter the enable password you configured as the password on the prompt (and nu username) when connecting to PDM. This will get you in &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;You will get privilige level 15 (which is the highest privilige level) when connecting with the enable password.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps,&lt;/P&gt;&lt;P&gt;Leo&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Jan 2004 20:40:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272652#M595453</guid>
      <dc:creator>l.mourits</dc:creator>
      <dc:date>2004-01-19T20:40:14Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272653#M595455</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi leo&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I appreciate your help on this.&lt;/P&gt;&lt;P&gt;Thanks for the tip on the passwords.&lt;/P&gt;&lt;P&gt;I was so stuck in my fault that I forgot to do that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have followed your steps as you said.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I type in the &lt;A class="jive-link-custom" href="https://10.98.7.250/pdm.html" target="_blank"&gt;https://10.98.7.250/pdm.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It then prompts me about the certificate.&lt;/P&gt;&lt;P&gt;All of them are ticked except for one and it says&lt;/P&gt;&lt;P&gt;"The name on the security is invalid or does not&lt;/P&gt;&lt;P&gt;match the name of the site"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I then click on proceed and it comes up with the&lt;/P&gt;&lt;P&gt;loading PDM manager please wait.....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It just sits on that page and does nothing further.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What do I need to do next?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Jan 2004 12:20:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272653#M595455</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-20T12:20:27Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272654#M595457</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ward,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In that case it looks to me as you need to regenerate the public/private key.&lt;/P&gt;&lt;P&gt;Please execute the following commands:&lt;/P&gt;&lt;P&gt; ca zero rsa &lt;/P&gt;&lt;P&gt; ca gen rsa key 512 &lt;/P&gt;&lt;P&gt; ca save all&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After this please try again, but I'm pretty sure this will help you out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;kind regards,&lt;/P&gt;&lt;P&gt;Leo&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Jan 2004 14:51:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272654#M595457</guid>
      <dc:creator>l.mourits</dc:creator>
      <dc:date>2004-01-20T14:51:56Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272655#M595459</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Leo,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have done the commands as you requested.&lt;/P&gt;&lt;P&gt;I then attempted to login again by typing&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="https://10.98.7.250/pdm.html" target="_blank"&gt;https://10.98.7.250/pdm.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I then get prompted again with the security certificate message.It says that the date is valid etc but it still says the name on the security certificate is invalid or does not match the name of the site.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;At the top of the popup it says Information you exchange with this site cannot be viewed or changed by others.however there is a problem with the site's security certificate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So I am still getting this message.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It does however come up with the pretty cisco picture again saying loading PIX PDM manager...please wait...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You got any further ideas?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ward&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Jan 2004 15:34:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272655#M595459</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-20T15:34:43Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272656#M595461</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;May this sounds obvious but, have you already put the address of your pix as a trusted site in the Internet Explorer (i.e. &lt;A class="jive-link-custom" href="https://10.98.7.250" target="_blank"&gt;https://10.98.7.250&lt;/A&gt;), this problem happened to me  and I only needed to put te address of the pix as a trusted site and it works immedatly.&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;David&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jan 2004 00:57:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272656#M595461</guid>
      <dc:creator>davisdev</dc:creator>
      <dc:date>2004-01-21T00:57:33Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272657#M595463</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ward,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First of all, the first pop-up does indeed consists of a messgae indicating that the date is valid, but the name of the site is invalid. This is normal and can be ignored by just accepting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So, after this you are getting the username/password prompt and when entering just the enable secret you get the message loading PDM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This indicates that your http server is up, you have http access, you have pdm location configured and that the password entered is valid.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What happens next is what it says, that PDM is loading...., at least, it should be :-S&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Normally, the first time you enter PDM, you would get a prompt asking if you want to run and install PDM from Cisco. Did you ever get this message? If so, did you clicked yes then?&lt;/P&gt;&lt;P&gt;Is the box ever upgraded? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you enter a "show version" and post output, cause it starts to look like the PDM fiel is missing or something like that.&lt;/P&gt;&lt;P&gt;Maybe we can see something there....&lt;/P&gt;&lt;P&gt;Kind regards,&lt;/P&gt;&lt;P&gt;Leo&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jan 2004 15:24:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272657#M595463</guid>
      <dc:creator>l.mourits</dc:creator>
      <dc:date>2004-01-21T15:24:13Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272658#M595464</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Leo&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please see below the show version output.&lt;/P&gt;&lt;P&gt;Please note that I havew done everything that is in all the conversations.Do you think i might need to upgrade my PDM.This is a brand new pix firewall and has never been upgraded.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NLONL02FIREWALL# sho version&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco PIX Firewall Version 6.3(1)&lt;/P&gt;&lt;P&gt;Cisco PIX Device Manager Version 3.0(1)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Compiled on Wed 19-Mar-03 11:49 by morlee&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NLONL02FIREWALL up 46 secs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hardware:   PIX-515E, 64 MB RAM, CPU Pentium II 433 MHz&lt;/P&gt;&lt;P&gt;Flash E28F128J3 @ 0x300, 16MB&lt;/P&gt;&lt;P&gt;BIOS Flash AM29F400B @ 0xfffd8000, 32KB&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Encryption hardware device : Crypto5823 (revision 0x1)&lt;/P&gt;&lt;P&gt;0: ethernet0: address is 000e.833e.ee8b, irq 10&lt;/P&gt;&lt;P&gt;1: ethernet1: address is 000e.833e.ee8c, irq 11&lt;/P&gt;&lt;P&gt;Licensed Features:&lt;/P&gt;&lt;P&gt;Failover:           Enabled&lt;/P&gt;&lt;P&gt;VPN-DES:            Enabled&lt;/P&gt;&lt;P&gt;VPN-3DES-AES:       Disabled&lt;/P&gt;&lt;P&gt;Maximum Interfaces: 6&lt;/P&gt;&lt;P&gt;Cut-through Proxy:  Enabled&lt;/P&gt;&lt;P&gt;Guards:             Enabled&lt;/P&gt;&lt;P&gt;URL-filtering:      Enabled&lt;/P&gt;&lt;P&gt;Inside Hosts:       Unlimited&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;              &lt;/P&gt;&lt;P&gt;Throughput:         Unlimited&lt;/P&gt;&lt;P&gt;IKE peers:          Unlimited&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This PIX has an Unrestricted (UR) license.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Serial Number: 806263072 (0x300e9920)&lt;/P&gt;&lt;P&gt;Running Activation Key: 0xed6cddef 0x4c4d4350 0xa3e2a0d9 0x4145f7ad &lt;/P&gt;&lt;P&gt;Configuration last modified by enable_15 at 00:00:10.920 UTC Fri Jan 1 1993&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NLONL02FIREWALL# &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 25 Jan 2004 13:01:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272658#M595464</guid>
      <dc:creator>ward</dc:creator>
      <dc:date>2004-01-25T13:01:50Z</dc:date>
    </item>
    <item>
      <title>Re: Pix 515e unrestricted</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272659#M595465</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;OFF topic=""&gt;&lt;/OFF&gt;&lt;/P&gt;&lt;P&gt;Sorry for the late reply, but I´ve been a few days of because I´ve become father of a lovely daughter, so I was taken care of mother and child :-))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ehm, something bothers me from your last reply....&lt;/P&gt;&lt;P&gt;I always thought you had an allready up and running PIX and allready had access to it via PDM, then changed the outside IP-address after which PDM connection failed. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From your last messsage I understand that this is a new out-of-the-box PIX and that configured an IP-address on the outside interface and try to access the PDM via the outside interface. Is this correct?&lt;/P&gt;&lt;P&gt;If so then I´m sorry that I put you on the wrong track all the messages before this one.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to have access to PDM on the outside interface there has to be some crypto-map configud and you have to have a VPN client on your system, caus you can not connect to PDM via the outside without the use of an IPSec tunnel.&lt;/P&gt;&lt;P&gt;You can only connect to PDM without using an IPSec tunnel if you are connecting via the inside IP-address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you have a new PIX and you defenitely want to connect via the outside interface to PDM you need to install VPN client on your PC and configure a crypto-map. If this is the case you should read the following sample config (and adapt it to your case):&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094497.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094497.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps,&lt;/P&gt;&lt;P&gt;Leo&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Feb 2004 21:49:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-unrestricted/m-p/272659#M595465</guid>
      <dc:creator>l.mourits</dc:creator>
      <dc:date>2004-02-09T21:49:10Z</dc:date>
    </item>
  </channel>
</rss>

