Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello,New to using AC. It was set up for our main receptionist before I came onboard. Now, we have another receptionist answering calls on another floor. She can open the AC, but when trying to place a call, she receives the error "No lines availa...
I have kind of a novice question about call security/encryption.Currently, we do not encrypt calls. To encrypt calls between the phones and CM, it is just as simple as setting the Enterprise Paramter for Device Security Mode to Encrypted and then re...
We recently upgraded our PIX-525 from v6.3.5 to v8.0.4. All went well with the upgrade. We formerly used the PDM for management of the PIX. Now, I see that the ASDM is used.My question is: How is the ASDM installed for the first time? I have tri...
I just took a new job where I am being asked to use a 2801 router running ADV_SECURITY IOS as a firewall. What is the best pratice to make the router as much like a firewall as possible?I thought that it was just setting up ACLs and then applying th...
Recently, our PIX-525 was upgraded from v6.3.5 to v.8.0.4. Since the upgrade, the PIX no longer allows connections from remote access clients that are behind a NAT boundary. Most of our clients are running WinXP or Vista.I have entered the 'cry isa...
I'm still not getting anything. How do I create a new cert?Also, when I TFTP the image, I just used "copy tftp flash." An associate of mine said that on older versions of the PIX, to install the PDM you had to tell it during the TFTP command, somet...
I have allowed access, but I simply get a "Cannot Connect" error from my browser. I have used nmap to scan the PIX's inside interface, and it does show port 443 open. One thing I noticed is that no certificate info is shown in the PIX config. Do I...
OK, I see. Can I have the router inspecting both the in and out directions on the outside interface for maximum security? (Note: The ACL assigned to the outside interface is only explicitly allowing icmp, and since we use NAT, any pinholes to speci...
OK, so I don't wan't the router inspecting packets coming *in* the outside interface? How is it a firewall if it's only inspecting what's going *out* the outside interface? What about making sure that nobody's coming in? Or is that implicit?
Thank you, Jorge. I was unable to use the third link you provided (503 forbidden). I am running the 12.4 mainline IOS with the Advanced Security feature set. Are you saying that I need a different feature set or that I need to run the 12.4T IOS fa...