Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We have a setup with 2 Cisco 720x, IOS 12.2(10) running HSRP and two SunSolaris running Firewall-1 with Stonebeat-Cluster using a multicast-mac addresses (01:00:5e:7c:00:06) all on the same LAN.The two Cisco see all the packets intended for the firew...
I upgraded a test PIX 520 from V6.1(3) to V6.2(1) and from pdm V1.1(1) to V2.0(2).Only the inside interface is enabled on this test PIX FW.My question is: Why in PDM V2.0(2) nothing is shown under system properties - category interfaces ?All the rest...
Hello I'm letting create a longer serial failover cable for two PIX520.I know already the cable pinouts described inhttp://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_61/pix_ig/apdx.htm#xtocid4but I do NOT know which exact type of serial p...
I run a PIX520 V6.1(1).I have installed PIX FW syslog server PFSS on WinNT4.I get syslog records there, but I cannot see the hostname of the originating PIX in the syslog records. I only get messages with some strange <nnn> numbers at the beginning (...
The problem is finally solved.There is a bug in the IOS which only occurs with NPE400 Processor in the 720x VXR Chassis.Hardware is now replaced by older NPE300.Works fine now.
Finally I found the solution myself. For your information I explain it here:PDM V2.0(2) and probably also PDM V2.0(1) as well, will not show any interface when there is no interface WITH SECURITY0 defined in the PIX-config file.Maybe you can use this...
I found out the solution myself.Since "ca gen rsa key 1024" is a global configuration command, you have to be in #PIX(config) mode to be able to execute this command.After generating the RSA key-pair I did a "ca save all".SSH-userID is always "pix"(w...
The statement about NAT works outbound, no problem.I do not exactly understand what you mean with the statement about the static statement.Do I have to define a static statement for every single address to be accessed on the inside?Or can I use only ...