cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1029
Views
0
Helpful
1
Replies

dlsw through pix firewall

arturo.reyna
Level 1
Level 1

I have a problem with dlsw through pix firewall, I checked ip connectivity and it is ok, my local peer in one router is 10.90.231.1 and its nat is 168.165.5.1, the remote peer is 128.6.252.254 and its nat is 168.165.2.67, I mean nat is in both ways.

the first nat is in one router with ip nat translation,

wan_router#sh ip nat translations

Pro Inside global Inside local Outside local Outside global

--- 168.165.5.1 10.90.232.1 --- ---

other nat is in pix firewall

pix-firewall#

static (inside,outside) 168.165.2.67 128.6.252.254 netmask 255.255.255.255

Those are configurations in routers.

remote_router (outside network)

dlsw local-peer peer-id 10.90.232.1

dlsw remote-peer 0 tcp 168.165.2.67

peer_router (inside network)

dlsw local-peer peer-id 128.6.252.254

dlsw remote-peer 0 tcp 168.165.5.1

What issues should i have to check?

1 Reply 1

steve.barlow
Level 7
Level 7

Did you open tcp port 2065 and 2067 on the PIX? Access-list on router?

Did you do an extended ping between the IPs?

Try debug dlsw peers.

See link about dlsw and nat: http://www.cisco.com/warp/public/697/6.html

Hope it helps

Steve

Review Cisco Networking for a $25 gift card