<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: creating rules on cisco pix in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390687#M856967</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you tried it already?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 08 Apr 2010 02:37:54 GMT</pubDate>
    <dc:creator>Federico Coto Fajardo</dc:creator>
    <dc:date>2010-04-08T02:37:54Z</dc:date>
    <item>
      <title>creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390673#M856944</link>
      <description>&lt;P&gt;Could anyone help me to create a few basic rules that will allow this traffic to flow thru the cisco pix firewall?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;internal networks:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;192.168.1.0/24&lt;/P&gt;&lt;P&gt;192.168.2.0/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;both needs to be able to search internet websites, browse, and connect to other remote networks (ex. 10.5.1.0/24)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the other hand, a remote network (ex. 10.5.1.0/24) needs to have access to internal network 192.168.1.0/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you provide an example?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 17:29:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390673#M856944</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2019-03-11T17:29:59Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390674#M856945</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;These are the basic Firewall rules:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The traffic flow through interfaces based on the security level.&lt;/P&gt;&lt;P&gt;Security level ranges from (0-100)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When communicating from a higher security interface to a lower security interface (inside to outside), you need a STATIC NAT and ACL permiting the traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When communicating from a lower security interface to a higher security interface (outside to inside), you just need NAT.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In your example:&lt;/P&gt;&lt;P&gt;To allow&lt;/P&gt;&lt;P&gt;192.168.1.0/24&lt;/P&gt;&lt;P&gt;192.168.2.0/24&lt;/P&gt;&lt;P&gt;to get to the Internet, you should have:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside) 1 192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside) 2 192.168.2.0 255.255.255.0&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;global (outside) 2 interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To allow communication TO servers in the internal network 192.168.1.0/24 from the Internet, for example to 192.168.1.8&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (in,out) public_IP 192.168.1.8&lt;/P&gt;&lt;P&gt;access-list OUTSIDE permit ip any host public_IP&lt;/P&gt;&lt;P&gt;access-group OUTSIDE in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 20:34:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390674#M856945</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-07T20:34:00Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390675#M856946</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi federico,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I created the rules base on your instructions, but, the internal network can not access any outside websites.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The 192.168.1.0/24 and 192.168.2.0/24 do not have any servers to offer to the public. Instead, the internal networks are computers that needs to access resources outside of the firewall.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 21:00:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390675#M856946</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-07T21:00:19Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390676#M856947</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok,&lt;/P&gt;&lt;P&gt;What you're missing is the routing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The internal networks should have a route to the Internet pointing to the ASA (or have the ASA as their default gateway).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The ASA as well should have a default gateway:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route outside 0 0 x.x.x.x&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In this case x.x.x.x represents the IP of the next-hop (next device) in the path to the Internet from the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check it out and let us know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 21:06:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390676#M856947</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-07T21:06:35Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390677#M856948</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ok, let me send you my temporary configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;PIX Version 6.3(5)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;interface ethernet0 auto&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;interface ethernet1 auto&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;interface ethernet2 auto&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;interface ethernet3 auto shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;interface ethernet4 auto shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;interface ethernet5 auto shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;nameif ethernet0 outside security0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;nameif ethernet1 inside security100&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;nameif ethernet2 intf2 security4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;nameif ethernet3 intf3 security6&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;nameif ethernet4 intf4 security8&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;nameif ethernet5 intf5 security10&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;enable password DAyT8Zy5o1YlaDcM encrypted&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;hostname LVCLC-FW&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;domain-name lv.psu.edu&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol dns maximum-length 512&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol ftp 21&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol h323 h225 1720&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol h323 ras 1718-1719&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol http 80&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol rsh 514&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol rtsp 554&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol sip 5060&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol sip udp 5060&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol skinny 2000&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol smtp 25&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol sqlnet 1521&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;fixup protocol tftp 69&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;names&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;object-group service webservices tcp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq www&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq https&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq ftp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq telnet&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq ssh&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;object-group icmp-type icmp-allowed&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;icmp-object echo&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;icmp-object time-exceeded&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;object-group protocol tcpudp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;protocol-object udp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;protocol-object tcp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;protocol-object esp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;pager lines 24&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;mtu outside 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;mtu inside 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;mtu intf2 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;mtu intf3 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;mtu intf4 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;mtu intf5 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;ip address outside 172.31.53.100 255.255.255.0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;ip address inside 146.186.174.129 255.255.255.192&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;ip address intf2 128.118.6.129 255.255.255.128&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no ip address intf3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no ip address intf4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no ip address intf5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;ip audit info action alarm&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;ip audit attack action alarm&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no failover&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;failover timeout 0:00:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;failover poll 15&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no failover ip address outside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no failover ip address inside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no failover ip address intf2&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no failover ip address intf3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no failover ip address intf4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no failover ip address intf5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;pdm history enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;arp timeout 14400&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;route inside 0.0.0.0 0.0.0.0 172.31.53.100 1&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;timeout xlate 3:00:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;timeout sip-disconnect 0:02:00 sip-invite 0:03:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;timeout uauth 0:05:00 absolute&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;aaa-server TACACS+ protocol tacacs+&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;aaa-server TACACS+ max-failed-attempts 3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;aaa-server TACACS+ deadtime 10&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;aaa-server RADIUS protocol radius&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;aaa-server RADIUS max-failed-attempts 3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;aaa-server RADIUS deadtime 10&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;aaa-server LOCAL protocol local&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;http server enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;http 146.186.174.128 255.255.255.192 inside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no snmp-server location&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no snmp-server contact&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;snmp-server community public&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;no snmp-server enable traps&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;floodguard enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;telnet timeout 5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;ssh timeout 5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;console timeout 0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: #000000; font-size: 10pt;"&gt;terminal width 80&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 21:36:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390677#M856948</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-07T21:36:26Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390678#M856949</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I see some problems.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The PIX has no clue as to where networks 192.168.1.0/24 and 192.168.2.0/24 are (there are no routes)&lt;/P&gt;&lt;P&gt;Are those networks reachable via which interface on the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The default route on the PIX is set to the inside interface. Is this the interface connected to the Internet?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 21:42:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390678#M856949</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-07T21:42:08Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390679#M856951</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;on the configuration file, the two internal networks are:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;146.186.174.128 255.255.255.192&lt;/P&gt;&lt;P&gt;128.118.6.128 255.255.255.128&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The external (public address) is 172.31.53.0/24 or 172.31.53.100/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Both internal networks needs to go out. These are just computers that will access resources (servers, webserservers, etc.) to public network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Take a look at the attach file.|&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 22:19:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390679#M856951</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-07T22:19:05Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390680#M856953</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;nat (inside) 1 146.186.174.128 255.255.255.129&lt;BR /&gt;nat (intf2) 1 128.118.6.128 255.255.255.128&lt;BR /&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;access-list inside permit ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Make sure that both internal networks have the ASA as the default gateway.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 22:25:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390680#M856953</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-07T22:25:58Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390681#M856954</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;what should I do with the other rules created? should I have them removed?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On my last submission, I uploaded a diagram for you to comment on.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 22:37:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390681#M856954</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-07T22:37:46Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390682#M856956</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just remove the previous rules typing the same command again with the keyword ''no'' in front.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try to get Internet access from the internal networks.&lt;/P&gt;&lt;P&gt;I saw the diagram, just out of curiosity, why do you have public IP addresses in your internal networks?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 22:40:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390682#M856956</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-07T22:40:14Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390683#M856958</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;these are testing ip address, until we get the firewall correctly working..&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 22:46:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390683#M856958</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-07T22:46:59Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390684#M856960</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Before uploading the new config, is this sound much better?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;PIX Version 6.3(5)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;interface ethernet0 auto&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;interface ethernet1 auto&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;interface ethernet2 auto&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;interface ethernet3 auto shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;interface ethernet4 auto shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;interface ethernet5 auto shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;nameif ethernet0 outside security0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;nameif ethernet1 inside security100&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;nameif ethernet2 intf2 security4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;nameif ethernet3 intf3 security6&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;nameif ethernet4 intf4 security8&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;nameif ethernet5 intf5 security10&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;enable password DAyT8Zy5o1YlaDcM encrypted&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;hostname LVCLC-FW&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;domain-name lv.psu.edu&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol dns maximum-length 512&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol ftp 21&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol h323 h225 1720&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol h323 ras 1718-1719&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol http 80&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol rsh 514&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol rtsp 554&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol sip 5060&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol sip udp 5060&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol skinny 2000&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol smtp 25&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol sqlnet 1521&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;fixup protocol tftp 69&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;names&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;object-group service webservices tcp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq www&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq https&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq ftp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq telnet&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq ssh&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;object-group icmp-type icmp-allowed&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;icmp-object echo&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;icmp-object time-exceeded&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;object-group protocol tcpudp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;protocol-object udp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;protocol-object tcp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;protocol-object esp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;pager lines 24&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;mtu outside 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;mtu inside 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;mtu intf2 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;mtu intf3 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;mtu intf4 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;mtu intf5 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;ip address outside 172.31.53.100 255.255.255.0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;ip address inside 146.186.174.129 255.255.255.192&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;ip address intf2 128.118.6.129 255.255.255.128&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no ip address intf3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no ip address intf4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no ip address intf5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;ip audit info action alarm&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;ip audit attack action alarm&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no failover&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;failover timeout 0:00:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;failover poll 15&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no failover ip address outside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no failover ip address inside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no failover ip address intf2&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no failover ip address intf3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no failover ip address intf4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no failover ip address intf5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;pdm history enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;arp timeout 14400&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3;"&gt;&lt;SPAN style="color: #333333; font-size: 9pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;nat (inside) 1 146.186.174.128 255.255.255.129&lt;BR /&gt;nat (intf2) 1 128.118.6.128 255.255.255.128&lt;BR /&gt;global (outside) 1 interface&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3;"&gt;&lt;SPAN style="color: #333333; font-size: 9pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;access-list inside permit ip any any&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;route inside 0.0.0.0 0.0.0.0 172.31.53.100 1&lt;BR /&gt;timeout xlate 3:00:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;timeout sip-disconnect 0:02:00 sip-invite 0:03:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;timeout uauth 0:05:00 absolute&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;aaa-server TACACS+ protocol tacacs+&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;aaa-server TACACS+ max-failed-attempts 3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;aaa-server TACACS+ deadtime 10&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;aaa-server RADIUS protocol radius&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;aaa-server RADIUS max-failed-attempts 3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;aaa-server RADIUS deadtime 10&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;aaa-server LOCAL protocol local&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;http server enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;http 146.186.174.128 255.255.255.192 inside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no snmp-server location&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no snmp-server contact&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;snmp-server community public&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;no snmp-server enable traps&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;floodguard enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;telnet timeout 5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;ssh timeout 5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;console timeout 0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;terminal width 80&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 10pt;"&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Apr 2010 23:25:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390684#M856960</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-07T23:25:38Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390685#M856962</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This route is incorrect: &lt;SPAN lang="EN" style="color: black; font-size: 10pt;"&gt;route inside&amp;nbsp; 0.0.0.0 0.0.0.0 172.31.53.100 1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;172.31.53.100 is your outside interface ip address. You can't route the default gateway back to your inside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The default route should say: &lt;STRONG&gt;route outside 0.0.0.0 0.0.0.0 172.31.53.x&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;172.31.53.x should the next hop router ip address connected to the PIX outside interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and please remove the "route inside" command.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Apr 2010 00:34:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390685#M856962</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-04-08T00:34:57Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390686#M856964</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;ok, thanks for the suggestion..&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;PIX Version 6.3(5)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;interface ethernet0 auto&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;interface ethernet1 auto&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;interface ethernet2 auto&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;interface ethernet3 auto shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;interface ethernet4 auto shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;interface ethernet5 auto shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;nameif ethernet0 outside security0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;nameif ethernet1 inside security100&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;nameif ethernet2 intf2 security4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;nameif ethernet3 intf3 security6&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;nameif ethernet4 intf4 security8&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;nameif ethernet5 intf5 security10&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;enable password DAyT8Zy5o1YlaDcM encrypted&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;hostname LVCLC-FW&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;domain-name lv.psu.edu&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol dns maximum-length 512&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol ftp 21&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol h323 h225 1720&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol h323 ras 1718-1719&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol http 80&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol rsh 514&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol rtsp 554&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol sip 5060&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol sip udp 5060&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol skinny 2000&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol smtp 25&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol sqlnet 1521&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;fixup protocol tftp 69&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;names&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;object-group service webservices tcp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq www&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq https&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq ftp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq telnet&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;port-object eq ssh&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;object-group icmp-type icmp-allowed&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;icmp-object echo&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;icmp-object time-exceeded&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;object-group protocol tcpudp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;protocol-object udp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;protocol-object tcp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;SPAN style="mso-spacerun: yes;"&gt;&amp;nbsp; &lt;/SPAN&gt;protocol-object esp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;pager lines 24&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;mtu outside 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;mtu inside 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;mtu intf2 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;mtu intf3 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;mtu intf4 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;mtu intf5 1500&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;ip address outside 172.31.53.100 255.255.255.0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;ip address inside 146.186.174.129 255.255.255.192&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;ip address intf2 128.118.6.129 255.255.255.128&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no ip address intf3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no ip address intf4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no ip address intf5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;ip audit info action alarm&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;ip audit attack action alarm&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no failover&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;failover timeout 0:00:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;failover poll 15&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no failover ip address outside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no failover ip address inside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no failover ip address intf2&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no failover ip address intf3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no failover ip address intf4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no failover ip address intf5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;pdm history enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;arp timeout 14400&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3;"&gt;&lt;SPAN style="color: #333333; font-size: 9pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;nat (inside) 1 146.186.174.128 255.255.255.129&lt;BR /&gt;nat (intf2) 1 128.118.6.128 255.255.255.128&lt;BR /&gt;global (outside) 1 interface&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3;"&gt;&lt;SPAN style="color: #333333; font-size: 9pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;access-list inside permit ip any any&lt;BR /&gt;&lt;/SPAN&gt;&lt;STRONG style=": ; mso-bidi-font-size: 11.0pt; color: #333333; font-size: 9pt; mso-ansi-language: EN; Times New Roman&amp;quot;: ; mso-fareast-font-family: &amp;quot; "&gt;route outside 0.0.0.0 0.0.0.0 172.31.53.100 &lt;/STRONG&gt;&lt;SPAN style="color: #333333; font-size: 9pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-ansi-language: EN;"&gt;172.31.53.106&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;timeout xlate 3:00:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;timeout sip-disconnect 0:02:00 sip-invite 0:03:00&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;timeout uauth 0:05:00 absolute&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;aaa-server TACACS+ protocol tacacs+&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;aaa-server TACACS+ max-failed-attempts 3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;aaa-server TACACS+ deadtime 10&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;aaa-server RADIUS protocol radius&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;aaa-server RADIUS max-failed-attempts 3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;aaa-server RADIUS deadtime 10&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;aaa-server LOCAL protocol local&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;http server enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;http 146.186.174.128 255.255.255.192 inside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no snmp-server location&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no snmp-server contact&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;snmp-server community public&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;no snmp-server enable traps&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;floodguard enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;telnet timeout 5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;ssh timeout 5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;console timeout 0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="line-height: normal; margin: 0in 0in 0pt; background: #f4f3f3; mso-pagination: none; mso-layout-grid-align: none;"&gt;&lt;SPAN style="color: black; font-size: 10pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;terminal width 80&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 10pt;"&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Apr 2010 02:16:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390686#M856964</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-08T02:16:16Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390687#M856967</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you tried it already?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Apr 2010 02:37:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390687#M856967</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-08T02:37:54Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390688#M856968</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I will have it tested tomorrow morning.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the other hand, does these settings provide some protection to the internal network?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Apr 2010 02:42:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390688#M856968</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-08T02:42:19Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390689#M856971</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The internal hosts should access the web getting translated to the outside IP of the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There's protection in terms that no inbound access is permitted by the ASA (with the exception of the replies for the outbound connections).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's in fact a very basic configuration and normally you would want to change your internal addressing scheme to a private range of IPs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Apr 2010 02:46:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390689#M856971</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-08T02:46:07Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390690#M856976</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Now, the host behind the firewall will need to access other services:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Telnet&lt;/P&gt;&lt;P&gt;Printing thru Print Server&lt;/P&gt;&lt;P&gt;FTP&lt;/P&gt;&lt;P&gt;https&lt;/P&gt;&lt;P&gt;Microsoft DFS&lt;/P&gt;&lt;P&gt;Check EMail&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And, in both internal networks, these computers are join to an active directory server located remotely. Therefore, the remote servers will need to have access to these two networks. Can you provide a simple rule(s) that allow the servers to make sure authentication, active directory communication does not get interrupted?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And, in some communication instances, the internal clients will have a direct communication to other network(s). In other words, communication between the internal subnet(s) and other remote subnet(s) should be opened. This is most certain between trusted network(s).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Apr 2010 03:08:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390690#M856976</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-08T03:08:09Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390691#M856978</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Fransisco,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I made the changes in accord to the new configuration file, and the internal network can't still see any host on the 172.31.53.0/24 network. The 172.31.53.0/24 would be oustide of the firewall.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Apr 2010 12:36:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390691#M856978</guid>
      <dc:creator>par13</dc:creator>
      <dc:date>2010-04-08T12:36:29Z</dc:date>
    </item>
    <item>
      <title>Re: creating rules on cisco pix</title>
      <link>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390692#M856981</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The internal networks can go to the Internet?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If so, then the ASA is allowing the traffic out fine.&lt;/P&gt;&lt;P&gt;According to the diagram, the external network is outside the ASA (but is not directly connected is it?).&amp;nbsp; Is this external network another office geographically located on a different site?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We need to check if the problem is with your ASA or with the external network not knowing how to reach your internal networks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Apr 2010 13:47:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/creating-rules-on-cisco-pix/m-p/1390692#M856981</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-08T13:47:13Z</dc:date>
    </item>
  </channel>
</rss>

