<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX 515E setup problems... please help! in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264300#M610117</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also forgot to add this attachment for you, this explains the six basic steps required to setup a PIX. Hope it helps out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jay&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 21 Jul 2004 10:44:07 GMT</pubDate>
    <dc:creator>jmia</dc:creator>
    <dc:date>2004-07-21T10:44:07Z</dc:date>
    <item>
      <title>PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264296#M610109</link>
      <description>&lt;P&gt;Hi... hopefully someone will be able to help a PIX newbie like me... here's the problem. I am moving from an ISA 2000 firewall server to a PIX 515E. Our network is on a 10.0.0.1 - 10.0.5.254 "network." I have two lines to the internet, however, which I am connecting to via a dual router... Xincom XC-DPG602. The internal IP address for this router is 192.168.1.3, and through the ISA server, I have internet access. The external IP addresses for my internet lines are through earthlink (T1) (208.29.018.xxx) and Time warner (Cable) (70.60.48.xxx). They are being load balanced through the Xincom router, which is why I went with a "dual" router such as this. I will admit, I am pretty new at configuring PIX firewalls, so I figured I'd try to use the PIX default settings (it says it is configured for small business out of the box), but it wouldn't work. When I try to change the inside or the outside interfaces though (from the terminal or from the PDM interface, I usually get errors of some kind and still nothing goes through. I have tried to read what I could from the internet, but I just can't seem to make any headway. If this makes any sense to anyone, I hope you will help me out. &lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;Eric&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 07:31:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264296#M610109</guid>
      <dc:creator>enpop1</dc:creator>
      <dc:date>2020-02-21T07:31:18Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264297#M610111</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Where is the NAT happening? basically these are all you need&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip address inside&lt;/P&gt;&lt;P&gt;ip address outside&lt;/P&gt;&lt;P&gt;route 0 0 outside 192.168.1.3&lt;/P&gt;&lt;P&gt;nat (inside) 1 0 0 &lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(For the traffic to flow from inside to outside)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Jul 2004 21:16:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264297#M610111</guid>
      <dc:creator>nkhawaja</dc:creator>
      <dc:date>2004-07-20T21:16:28Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264298#M610113</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi... thanks for your reply. I have the current configuration of the PIX listed here, but it is not working. When I try to set the inside ip address to something other than 192.168.1.1, it tells me that it conflicts with the DHCP pool, or something along those lines. Does any of this make sense? All I need to do is provide access to the internet for our inside users. I do not have a dmz as of yet or anything "special," and I do not want to use DHCP from this firewall, since I already have a dhcp server on my network.  Thanks again for the help. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Switch&amp;gt;write term&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Building configuration...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX Version 6.3(3)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface ethernet0 auto&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface ethernet1 auto&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface ethernet2 auto shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nameif ethernet0 outside security0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nameif ethernet1 inside security100&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nameif ethernet2 intf2 security4&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;enable password xxxxx/xxxxxxxx/ encrypted&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;passwd xxxxxxxx.xxxxx encrypted&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hostname pixfirewall&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;domain-name cathedral-prep.com&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;clock timezone EST -5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;clock summer-time EDT recurring&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol dns maximum-length 512&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol ftp 21&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol h323 h225 1720&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol h323 ras 1718-1719&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol http 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol rsh 514&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol rtsp 554&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol sip 5060&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;              &lt;/P&gt;&lt;P&gt;fixup protocol sip udp 5060&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol skinny 2000&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol smtp 25&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol sqlnet 1521&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol tftp 69&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mtu intf2 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip address outside 192.168.1.3 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip address inside 192.168.1.1 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no ip address intf2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip audit info action alarm&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip audit attack action alarm&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pdm location 10.0.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pdm location 10.0.2.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pdm location 10.0.3.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pdm location 10.0.4.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pdm location 10.0.5.2 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pdm logging informational 100&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pdm history enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;global (outside) 10 70.60.48.238-70.60.48.248&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;              &lt;/P&gt;&lt;P&gt;global (inside) 200 10.0.5.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside) 10 0.0.0.0 0.0.0.0 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 192.168.1.1 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route inside 10.0.1.0 255.255.255.0 192.168.1.3 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route inside 10.0.2.0 255.255.255.0 192.168.1.3 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route inside 10.0.3.0 255.255.255.0 192.168.1.3 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route inside 10.0.4.0 255.255.255.0 192.168.1.3 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route inside 10.0.5.2 255.255.255.255 192.168.1.3 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server LOCAL protocol local &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http 10.0.1.1 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;snmp-server community public&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no snmp-server enable traps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;floodguard enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;telnet timeout 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;              &lt;/P&gt;&lt;P&gt;ssh timeout 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dhcpd address 192.168.1.2-192.168.1.254 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dhcpd lease 3600&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dhcpd ping_timeout 750&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dhcpd auto_config outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;terminal width 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cryptochecksum:xxxxx&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[OK]&lt;/P&gt;&lt;P&gt;  pixfirewall(config)# &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jul 2004 10:01:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264298#M610113</guid>
      <dc:creator>enpop1</dc:creator>
      <dc:date>2004-07-21T10:01:47Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264299#M610115</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You'll need to disable dhcp on the firewall first, to do this issue in configuration mode:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no dhcpd enable &lt;INTERFACE_NAME&gt;&lt;/INTERFACE_NAME&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This will stop dhcp on the firewall, you can also clear the other dhcp commands by issuing 'no' i.e. no dhcpd lease 3600 etc. Do this from CLI under config mode and save with write mem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can find the step-by-step setup guide here:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/sw/secursw/ps2120/products_command_reference_book09186a008017284e.html" target="_blank"&gt;http://www.cisco.com/en/US/products/sw/secursw/ps2120/products_command_reference_book09186a008017284e.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Look at section: Establishing Connectivity.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know how you get on or require further help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jay&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jul 2004 10:32:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264299#M610115</guid>
      <dc:creator>jmia</dc:creator>
      <dc:date>2004-07-21T10:32:15Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264300#M610117</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also forgot to add this attachment for you, this explains the six basic steps required to setup a PIX. Hope it helps out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jay&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jul 2004 10:44:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264300#M610117</guid>
      <dc:creator>jmia</dc:creator>
      <dc:date>2004-07-21T10:44:07Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264301#M610119</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First clear the dhcpd parameters, the command is "clear dhcpd"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;then do whatever you would like to with the IP addressing .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Nadeem&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jul 2004 15:20:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264301#M610119</guid>
      <dc:creator>nkhawaja</dc:creator>
      <dc:date>2004-07-21T15:20:09Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264302#M610121</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi... this is what I have now for my configuration on the PIX, but for sme reason, I am still not able to get internet access through it. Can someone look at this configuation and hopefully let me know if it should work or if I am doing something wrong? Thanks again...&lt;/P&gt;&lt;P&gt;Eric&lt;/P&gt;&lt;P&gt;oh, and if you read through this, the 192.168.1.3 address is the internal "gateway" address of my router. My network basically has PCs with IP addresses ranging from 10.0.1.1 - 10.0.5.254 on it as well, if this helps. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;wri term&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Building configuration...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX Version 6.3(3)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface ethernet0 auto&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface ethernet1 auto&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface ethernet2 auto shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nameif ethernet0 outside security0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nameif ethernet1 inside security100&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nameif ethernet2 intf2 security4&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;enable password xxxx&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;passwd xxxxx&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hostname pixfirewall&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;domain-name cathedral-prep.com&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;clock timezone EST -5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;clock summer-time EDT recurring&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol dns maximum-length 512&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol ftp 21&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol h323 h225 1720&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol h323 ras 1718-1719&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol http 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol rsh 514&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol rtsp 554&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol sip 5060&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;              &lt;/P&gt;&lt;P&gt;fixup protocol sip udp 5060&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol skinny 2000&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol smtp 25&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol sqlnet 1521&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;fixup protocol tftp 69&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mtu intf2 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip address outside 192.168.1.2 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip address inside 10.2.1.1 255.0.0.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no ip address intf2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip audit info action alarm&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip audit attack action alarm&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pdm logging informational 100&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pdm history enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside) 1 10.0.0.0 255.0.0.0 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 192.168.1.3 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;              &lt;/P&gt;&lt;P&gt;timeout uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server LOCAL protocol local &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http 10.0.1.1 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;snmp-server community public&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no snmp-server enable traps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;floodguard enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;telnet timeout 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ssh timeout 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;terminal width 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cryptochecksum:xxxx&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[OK]&lt;/P&gt;&lt;P&gt;  pixfirewall(config)# &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jul 2004 17:11:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264302#M610121</guid>
      <dc:creator>enpop1</dc:creator>
      <dc:date>2004-07-21T17:11:26Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264303#M610123</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi... the attachment helped me understand a bit more - thanks. I am still running into connection problems, however. I posted my now current configuration out on this thread... I would appreciate any help with looking through it and seeing if I am still missing something. I still cannot establish an internet connection through the PIX. &lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Eric&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jul 2004 17:14:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264303#M610123</guid>
      <dc:creator>enpop1</dc:creator>
      <dc:date>2004-07-21T17:14:12Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264304#M610124</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what exactly is not running? any kind of traffic to the internet? ping wont work unless you add&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list 100 permit icmp any any echo-rely&lt;/P&gt;&lt;P&gt;access-group 100 in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can you access any site via its IP? Where is your DNS? after adding the above commands I told you, can you ping the 192.168.1.3 1  from any inside PC?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;IF that works, there PIX is Ok as far as the config. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jul 2004 17:56:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264304#M610124</guid>
      <dc:creator>nkhawaja</dc:creator>
      <dc:date>2004-07-21T17:56:08Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264305#M610126</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi...&lt;/P&gt;&lt;P&gt;I added these lines, and though I can ping the PIX, i cannot ping through the pix to the router. I have a dhcp server on the network (10.0.0.82) and I have tried pinging through to other web sites - google.com, msn.com, etc - but it comes back as host unreachable. I tried this from four different PCs in the building. Do I have to add something to the pix for DNS?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jul 2004 18:33:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264305#M610126</guid>
      <dc:creator>enpop1</dc:creator>
      <dc:date>2004-07-21T18:33:59Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E setup problems... please help!</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264306#M610128</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;what lines? the acccess-list lines? if you are on the PIX, can you ping your default gateway right from there? there is nothing much left in the configs. &lt;/P&gt;&lt;P&gt;what does "show interface" says? are the interfaces up?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Jul 2004 23:59:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-setup-problems-please-help/m-p/264306#M610128</guid>
      <dc:creator>nkhawaja</dc:creator>
      <dc:date>2004-07-21T23:59:45Z</dc:date>
    </item>
  </channel>
</rss>

