cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
382
Views
0
Helpful
3
Replies

Pix515e, Access rules conversion to ACLs .

bwurm
Level 1
Level 1

I have heard a rumor that a program/app/utility exists that will take the access rules and conduits list from the pix and convert it into access lists.

Has anyone also heard this ? Has anyone found this?

Thank you

3 Replies 3

gfullage
Cisco Employee
Cisco Employee

The PIX Output Interpreter will do it for you. Select PIX, then "write term", paste in your config and off you go.

https://www.cisco.com/cgi-bin/Support/OutputInterpreter/home.pl

Wooo Hoooo . That was most painless. Thank you very much.

Took me longer to log in and get there then to get converted to

accesslists and hints on how to improve my pix performance.

Thank you again.

rpieronek
Level 1
Level 1

Sep 19, 2002, 5:22am PST

Cisco does have a conduit to access list converter, it is hidden in

https://www.cisco.com/cgi-bin/Support/OutputInterpreter/home.pl

Under "Technologies" select "PIX" and then paste the entire PIX

configuration into the appropriate field. I would like to thank

Randy Ivener, CISSP

Network Consulting Engineer

Cisco Systems,

for the lead on where to look.

You have to do a show config and get the hole thing into the tool. Part of its output will show the conduits converted to access lists. However it does not take into account that you now have to define acls for sessions intiated on higher security interfaces going to lower security interfaces. It does do converstion of all the existing conduits.