cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
272
Views
0
Helpful
1
Replies

PIX PDM Access Rules using Groups

DNATA
Level 1
Level 1

We are configuring PIX515 ver6.3(1) using PDM3.0(1). When it comes to defining AccessRules using Groups in both Source and Destination fields having two or more members in the group, we noticed that duplicate rules appear when you expand the rule using "show details". For example, if you have two members in the Source group and two members in the Destination group, the detail of the rule created shows 8 pairs instead of 4 pairs. If you show the configuration created thru PIX CLI, you don't see this duplication.

Is this a normal behavior? We noticed the same in PIX6.2 and PDM2.0(1).

Can somebody please advise?

thanks&brgds,

Resty

1 Reply 1

skiran
Level 1
Level 1

Hi Resty

Please remove you object group and use access list or go for Netscreen which is more stable than PIX as the operation in Netscreen is ASIC based where as in PIX its software based ( DUMB PC ) ..so look at all options

brgds

Rock

Review Cisco Networking for a $25 gift card