cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1914
Views
4
Helpful
1
Replies

ISA behind PIX

sheldon.wu
Level 1
Level 1

Out company's network is

INTERNET >><< (public id)ROUTER(public ip) >><<(public ip)PIX(public ip) >><< (public ip) ISA2004 (private ip)

And i want to implement the VPN on ISA2004, what configuration should I do on PIX ?? Thanks.

1 Reply 1

a.kiprawih
Level 7
Level 7

You need to open ah(ip/51), esp(ip/50) and isakmp (udp/500) to allow pass-through VPN traffic. I believed no address translation is required since both of your PIX inside/outside carry public IP.

Pls look at the example at:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008045a2d2.shtml

Pls rate all useful post(s)

HTH

AK

Review Cisco Networking for a $25 gift card