<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX 515e basic config in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523754#M642954</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Nothing happens.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 15 Oct 2010 14:27:08 GMT</pubDate>
    <dc:creator>ribin.jones</dc:creator>
    <dc:date>2010-10-15T14:27:08Z</dc:date>
    <item>
      <title>PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523750#M642801</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I got a PIX and here is the config:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sh run&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX Version 8.0(3)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hostname pixfirewall&lt;/P&gt;&lt;P&gt;enable password 8Ry2YjIyt7RRXU24 encrypted&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;interface Ethernet0&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt; nameif Outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt;interface Ethernet1&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 192.168.1.51 255.255.255.0&lt;/P&gt;&lt;P&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;mtu Outside 1500&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;no failover&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;no asdm history enable&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;timeout uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;/P&gt;&lt;P&gt;telnet timeout 5&lt;/P&gt;&lt;P&gt;ssh timeout 5&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;/P&gt;&lt;P&gt;threat-detection statistics access-list&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;policy-map type inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt; parameters&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect netbios&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rtsp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect skinny &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect esmtp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sqlnet&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sunrpc&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect tftp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sip &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect xdmcp&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;prompt hostname context&lt;/P&gt;&lt;P&gt;Cryptochecksum:6ba6ce7d4cbacfeafbc90a2ed9b0d923&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My LAN is 192.168.1.0/24 and I gave the PIX IP as 192.168.1.51. My machine IP is 192.168.1.64 and 192.168.1.1 is the vlan IP of our Layer 3 switch. i am not able to ping 192.168.1.1 from the PIX. What could be the issue?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 18:54:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523750#M642801</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2019-03-11T18:54:40Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523751#M642844</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;could you try :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;icmp permit any echo-reply inside&lt;/P&gt;&lt;P&gt;icmp permit any echo inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map gloval_policy&lt;BR /&gt; class class-default&lt;BR /&gt;&amp;nbsp; inspect icmp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Dan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 13:59:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523751#M642844</guid>
      <dc:creator>Dan-Ciprian Cicioiu</dc:creator>
      <dc:date>2010-10-15T13:59:42Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523752#M642886</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No luck with those commands.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 14:01:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523752#M642886</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2010-10-15T14:01:43Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523753#M642923</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Could you enable logging and see what messages do you receive :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;logging buffered 7&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ping&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;then show logg&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Dan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 14:23:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523753#M642923</guid>
      <dc:creator>Dan-Ciprian Cicioiu</dc:creator>
      <dc:date>2010-10-15T14:23:12Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523754#M642954</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Nothing happens.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 14:27:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523754#M642954</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2010-10-15T14:27:08Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523755#M642962</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is this the full configuration that you have pasted ? Have you configured any access lists on the PIX ? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As per your description the switch seems to be the next hop on the PIX.&lt;/P&gt;&lt;P&gt;Check the default gateway on the switch.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do a "debug icmp trace" on the PIX to see if the packets are even reaching the firewall.&lt;/P&gt;&lt;P&gt;Another way to check if the pings are even reaching the firewall is by putting captures.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check the steps document to see if it helps you isolate the issue&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a008009402f.shtml"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a008009402f.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sindhuja&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 14:38:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523755#M642962</guid>
      <dc:creator>sinv</dc:creator>
      <dc:date>2010-10-15T14:38:26Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523756#M642979</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes Sindhuja, this is the full config I have pasted here. I have not added any acl on the PIX.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What do you meant by "Check the default gateway on the switch." ? I have other devices in the network with gw as 192.168.1.1 which works fine. I think I am missing some basic thing in the PIX initial configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 14:42:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523756#M642979</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2010-10-15T14:42:00Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523757#M642997</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I meant default gateway on the switch I meant to see if the traffic is being routed back to the PIX.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Lets just revisit your topology real quick here &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;host ----- --------------switch ------------------(192.168.1.51) PIX &lt;/P&gt;&lt;P&gt;(192.168.1.64)&amp;nbsp;&amp;nbsp; (192.168.1.1)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please correct me if this is wrong.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I understand you are unable to ping the 192.168.1.1 ip address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The only issue on the pix that could be causing this is that the pix is dropping incoming icmp and this can be done by access lists. &lt;/P&gt;&lt;P&gt;Since that option has been eliminated let us look at it from the routing point of view.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Are you able to ping from 192.168.1.64 to 192.168.1.51 and vice versa ?&lt;/P&gt;&lt;P&gt;2. What is the output of the debug icmp trace on the firewall when you try to ping 192.168.1.1?&lt;/P&gt;&lt;P&gt;3. Also check that when you do a show route on the PIX you are able to see a directly connected route to the 192.168.1.0 subnet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sindhuja&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 14:52:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523757#M642997</guid>
      <dc:creator>sinv</dc:creator>
      <dc:date>2010-10-15T14:52:37Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523758#M643022</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Ribin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also check for any interface access lists on the L3 switch for dropping ICMP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sindhuja&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 14:58:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523758#M643022</guid>
      <dc:creator>sinv</dc:creator>
      <dc:date>2010-10-15T14:58:09Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523759#M643031</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The topology is right.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My issue is not with the icmp alone. I am unable to make any kind of communication to or from the PIX. I think we can leave out the Layer 3 concept here (since the PC and the PIX sits in the same network). There is no acl in the L3 to block icmp.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Are you able to ping from 192.168.1.64 to 192.168.1.51 and vice versa ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; - No&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. What is the output of the debug icmp trace on the firewall when you try to ping 192.168.1.1?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pixfirewall(config)# debug icmp trace&lt;BR /&gt;debug icmp trace enabled at level 1&lt;BR /&gt;pixfirewall(config)#&amp;nbsp; &lt;BR /&gt;pixfirewall# ping 192.168.1.1&lt;BR /&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 192.168.1.1, timeout is 2 seconds:&lt;BR /&gt;?????&lt;BR /&gt;Success rate is 0 percent (0/5)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3. Also check that when you do a show route on the PIX you are able to see a directly connected route to the 192.168.1.0 subnet.&lt;/P&gt;&lt;P&gt;pixfirewall# sh route&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Codes: C - connected, S - static, I - IGRP, R - RIP, M - mobile, B - BGP&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; * - candidate default, U - per-user static route, o - ODR&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; P - periodic downloaded static route&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Gateway of last resort is not set&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;C&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.1.0 255.255.255.0 is directly connected, inside&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 15:03:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523759#M643031</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2010-10-15T15:03:34Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523760#M643038</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Ribin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check your physical connectivity. Change the interface that your have connected to on the pix.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sindhuja&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 15:07:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523760#M643038</guid>
      <dc:creator>sinv</dc:creator>
      <dc:date>2010-10-15T15:07:56Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523761#M643043</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No luck. My config oncemore:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sh run&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX Version 8.0(3)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hostname pixfirewall&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;enable password 8Ry2YjIyt7RRXU24 encrypted&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface Ethernet0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; nameif Outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface Ethernet1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; ip address 192.168.1.51 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;logging buffered debugging&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mtu Outside 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;no failover&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;icmp permit any echo-reply inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;icmp permit any echo inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no asdm history enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;timeout uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;telnet timeout 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ssh timeout 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;threat-detection statistics access-list&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username ribin password 4PKgAdpUwCY7ZdMA encrypted privilege 15&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map type inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; parameters&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum 512&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map gloval_policy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; class class-default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect icmp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect netbios&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rtsp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect skinny &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect esmtp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sqlnet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sunrpc&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect tftp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sip &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect xdmcp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;prompt hostname context&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cryptochecksum:6ba6ce7d4cbacfeafbc90a2ed9b0d923&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 15:13:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523761#M643043</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2010-10-15T15:13:39Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523762#M643048</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok ... Lets try capturing the traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list capin permit icmp host 192.168.1.51 host 192.168.1.1&lt;/P&gt;&lt;P&gt;access-list capin permit icmp host 192.168.1.1 host 192.168.1.51&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;capture capin interface inside access-list capin.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then initiate the ping.&lt;/P&gt;&lt;P&gt;Then check the output of 'show cap capin'&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since we are not able to ping even directly connected hosts I am suspecting an issue with the connectivity.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sindhuja&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 15:19:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523762#M643048</guid>
      <dc:creator>sinv</dc:creator>
      <dc:date>2010-10-15T15:19:17Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523763#M643050</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hmm..It is zero packet captured.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pixfirewall# sh capture capin&lt;BR /&gt;0 packet captured&lt;BR /&gt;0 packet shown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What could be the issue with the connectivity? Just now I connected a laptop (with IP 192.168.1.90) directly to the pix using a straight cable and even these can't ping each other.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 15:26:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523763#M643050</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2010-10-15T15:26:28Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523764#M643054</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just now noticed that the PIX doesn't even give reply to self ping.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 16:13:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523764#M643054</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2010-10-15T16:13:12Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523765#M643058</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Ribin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From one of the previous messages from, you mentioned we saw the following route present on the PIX:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;C&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.1.0 255.255.255.0 is directly connected, inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This means to say that the interface inside is up, physical and layer 2 connectivity should be good. So i think the config on the PIX is fine.&lt;/P&gt;&lt;P&gt;The next place to look at is, the config at the switch. Can you please make sure the PIX interface and the port to which the PC connects to are in the same VLAN... Because the issue we are facing seems to be caused at the switch.&lt;/P&gt;&lt;P&gt;So please issue the command "sh vlan" on the switch and verify that the 2 ports (connecting the PIX and the PC) are in the same vlan.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;But it is surprising though that it does not work even with a pc connected directly to PIX. Please do this test: When you connect the PC to the PIX directly, issue the command show route on the PIX and make sure you see one connected route for 192.168.1.0 and that you see a solid Green light at the PIX interface connected to the ASA, and perform a ping. Also issue the command "sh interface" on the PIX and paste the output here.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if this works,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Rudresh V&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 16:19:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523765#M643058</guid>
      <dc:creator>Rudresh Veerappaji</dc:creator>
      <dc:date>2010-10-15T16:19:48Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523766#M643061</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Ribin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you see a Solid Green light or an Amber light on the interface at the PIX when you connect a PC direclty or the switch ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Rudresh V&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 16:22:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523766#M643061</guid>
      <dc:creator>Rudresh Veerappaji</dc:creator>
      <dc:date>2010-10-15T16:22:00Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523767#M643064</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I see one connected route for 192.168.1.0 and I see a solid Green light at the PIX interface when connecting the PIX directly to the PC.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX# sh interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface Ethernet0 "", is administratively down, line protocol is down&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Hardware is i82559, BW 100 Mbps, DLY 100 usec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Auto-Duplex, Auto-Speed&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Available but not configured via nameif&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; MAC address 0013.7fdd.2671, MTU not set&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP address unassigned&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 7 packets input, 0 bytes, 0 no buffer&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Received 0 broadcasts, 0 runts, 0 giants&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 L2 decode drops&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 packets output, 0 bytes, 0 underruns&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output errors, 0 collisions, 0 interface resets&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 babbles, 0 late collisions, 0 deferred&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 lost carrier, 0 no carrier&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; input queue (curr/max packets): hardware (0/0) software (0/0)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; output queue (curr/max packets): hardware (1/0) software (0/0)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface Ethernet1 "inside", is up, line protocol is up&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Hardware is i82559, BW 100 Mbps, DLY 100 usec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Auto-Duplex(Full-duplex), Auto-Speed(100 Mbps)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; MAC address 0013.7fdd.2672, MTU 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP address unassigned&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1160 packets input, 97593 bytes, 0 no buffer&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Received 1159 broadcasts, 0 runts, 0 giants&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 L2 decode drops&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 packets output, 0 bytes, 0 underruns&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output errors, 0 collisions, 0 interface resets&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 babbles, 0 late collisions, 0 deferred&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 lost carrier, 0 no carrier&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; input queue (curr/max packets): hardware (0/1) software (0/2)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; output queue (curr/max packets): hardware (0/0) software (0/0)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Traffic Statistics for "inside":&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1145 packets input, 80375 bytes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 packets output, 0 bytes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 371 packets dropped&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1 minute input rate 0 pkts/sec,&amp;nbsp; 43 bytes/sec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1 minute output rate 0 pkts/sec,&amp;nbsp; 0 bytes/sec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1 minute drop rate, 0 pkts/sec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5 minute input rate 0 pkts/sec,&amp;nbsp; 73 bytes/sec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5 minute output rate 0 pkts/sec,&amp;nbsp; 0 bytes/sec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5 minute drop rate, 0 pkts/sec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;PIX#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any idea why there is no self ping for the PIX?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 16:34:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523767#M643064</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2010-10-15T16:34:34Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523768#M643070</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Ribin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From the show interface output you have pasted, i see the following segment:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface Ethernet1 "inside", is up, line protocol is up&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Hardware is i82559, BW 100 Mbps, DLY 100 usec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Auto-Duplex(Full-duplex), Auto-Speed(100 Mbps)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; MAC address 0013.7fdd.2672, MTU 1500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP address unassigned&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;....&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;--So we are seeing ip address un-assigned, can you please confirm if we have assigned the ip address 192.168.1.51 255.255.255.0 to the inside interface (ethenet 1) ? Because the above output is saying ip address is somehow not reflected on the interface. I think this is why we cannot ping the PIX interface itself...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Rudresh V&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 16:56:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523768#M643070</guid>
      <dc:creator>Rudresh Veerappaji</dc:creator>
      <dc:date>2010-10-15T16:56:09Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515e basic config</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523769#M643074</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes. I confirmed using sh run that we have an IP configured for Ethernet 1 interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It shows "Interface Ethernet1 "inside", is up, line protocol is up". How can these be shown "up" if there is no IP address configured.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But as you found out, "&lt;STRONG&gt;IP address unassigned"&lt;STRONG&gt;&amp;nbsp;&amp;nbsp; &lt;/STRONG&gt;&lt;/STRONG&gt;is something odd.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Ribin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 17:00:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-basic-config/m-p/1523769#M643074</guid>
      <dc:creator>ribin.jones</dc:creator>
      <dc:date>2010-10-15T17:00:49Z</dc:date>
    </item>
  </channel>
</rss>

