Sometimes it is necessary to configure a PIX to dynamically obtain an outside interface IP address.
To configure the PIX Firewall to dynamically obtain an IP address for the outside interface, use either:
Point-to-Point Protocol over Ethernet (PPPOE)
Note: DHCP does not require a username and password, while PPPOE does. If your Internet Service Provider (ISP) has provided a username and password, it is likely PPPOE is currently being used.
To configure the outside interface for DHCP, issue the ip address outside dhcp retry 5 command.
For DHCP, do not add a default gateway statically; instead add a default route to the configuration with the [setroute] option in the ip address command. For example, to configure the outside interface for DHCP and add a default route to the PIX, issue the ip address outside dhcp setroute retry 5 command.
Configuration of the outside interface for PPPOE is more complex. In this configuration example, sanjose is the username and cisco123 is the password provided by the ISP:
ip address outside pppoe setroute
! --- Specify PPPOE as the method to obtain the address for the outside interface.
vpdn group xyz request dialout pppoe
vpdn group xyz localname sanjose
! --- Note that the localname (sanjose) is the username the ISP provided.
vpdn group xyz ppp authentication pap
vpdn username sanjose password cisco123
! --- Note that the password (cisco123) is the password the ISP provided.
If the PIX is configured properly, and there are still problems obtaining an address, check the cables. If necessary, use a different cable. Also, verify the configuration of the DHCP server or PPPOE endpoint.
Hi there, I want to migrate Cisco ASA 5505 to Cisco FTD with Firepower Device Manager (FDM). I know that you can use Cisco's Migration Tool if you are migrating to Cisco FTD with Firepower Management Center (FMC). Is there any "easy" way to migr...
Hi all, Below in the configuration in ASA0, still unable to ping to outside interface gi/2, pls help interface GigabitEthernet1/1nameif insidesecurity-level 0ip address 192.168.1.1 255.255.255.0!interface GigabitEthernet1/2nameif outsidesecurity...
Hi, I am trying to take a configuration back-up on my Primary Admin Node.I see that the backup generation is stuck on 10%, it has been this way for about 5 days now.The ise node is still operating without any issues. I have tried to stop the bac...
Hi All,My company has purchased Firepower 2100 series firewall with ASA image 9.10.1. My query is related to CLI and GUI. Is it the CLI Commands and GUI steps/view will be same as normal ASA and manage by ASDM. Any help will be appreciated
THIS IS A BIT OF AN EMERGYCY: I installed two new virtual Ironports, C100V. I copied the config from our old Ironports. Now, for some reason, most of the incoming email are falsely being marked as [P-Suspected Spam]. From the logs it looks like everything...