01-16-2003 08:12 AM - edited 02-20-2020 10:30 PM
I have a VPN setup and working (PIX to Contivity) to access a web-based application. The application does not use the traditional 80 or 8080 ports. It starts in the 7xxx range and can grow depending on connection number. The VPN is working, but I get blocked from using the web page on this upper level port. Is there are way to allow http traffic on these upper level ports?
Thanks for your help
01-18-2003 05:49 AM
How do you set your "crypto" access-list ?
I think it would be simply just to define several "crypto" access-lists on the PIX to match interesting traffic to be encrypted, with a destination of tcp 7xxx . How about the packet`s source , does it use upper level random ports also ?
Regards,
Engel
01-20-2003 08:25 AM
The crypto access-lists are set to allow all ip traffic from the ip address through, not specific ports. Can you specify a range of addresses in a single access-list ?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide