Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I'm swapping firewalls for a customer. Taking out a watchguard soho and going in w/the 501. As of now all clients can get out but the server cannot ping past the internal interface. Here's the config:nameif ethernet0 outside security0 nameif ether...
Hello and thanks for your time in advance.I'm replacing a Watchguard firewall w/a 501 for a customer. We have only 1 public ip address(DSL). Using pat all clients can surf the web. There is a functional conduit into the firewall to an ftp server. ...
I've got a 501, with nat(inside) and global(outside). Something is preventing web browsing, ftp and icmp traffic. with netstat I can see the connections established(telnet to port 80 of external web server, ftp) but never see banners or login promp...
Yes. I apologize, my paranoia was not well thought out. The default route as well as the ips are different so I was reckless in the typing. It's as you guessed(let's say 205.25.2.114).
Yes, they are dummy ips and dns names. And thanks for the concern. I can use "debug icmp trace", then ping an external ip from a client and the console shows the traffic. Pinging the same ext. address from the server yields no result on the consol...
The global command actually works every time for me. We're only using 1 ip externally, so when you try to define the global with the ip address you get an error. The global(outside) interface works nicely. The ptr's have also proven to be a necces...
I've read that too. I've got a 501, with nat(inside) and global(outside). Something is preventing web browsing, ftp and icmp traffic. with netstat I can see the connections established(telnet to port 80 of external web server, ftp) but never see b...