cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1978
Views
0
Helpful
2
Replies

PIX Session/Connectivity problem

chetona
Level 1
Level 1

Hello,

I have two pix conneting to ISP. I do not have NAT configured so I am using public address for my servers. Network is redundant per se.

Problem is when user trying to access a web site on a server that is behind the PIX 2, incoming traffic is coming on PIX1 and then to the server and server is sending response through PIX 2. When user PING, user gets reply but when user try to access the web site, it doesn't work. Both PIX has the same configuration in terms of port open etc. etc. What could be the problem?

Any reply is welcome

faisal

2 Replies 2

j-block
Level 4
Level 4

It sounds like your topology is misconfigured. For stateful packet filtering to work properly, all traffic must pass through single PIX. If you are just running failover between the two PIX’s, this isn’t your issue. You might be running into question 15 on the PIX FAQ http://www.cisco.com/warp/public/110/pixfaq.shtml#Q15

Hello,

Thanks for your reply. Yes you are right, I was having problem that you just mentioned. We have fixed it by having the host routing the traffic to the right gateway.

Thanks

Faisal

Review Cisco Networking for a $25 gift card