Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
From a design perspective, is it better to terminate an ipsec tunnel end-point on the WAN facing interface or LAN facing interface if looking to terminate a tunnel on a perimeter router? Also, do the tunnel end-points need to be outside the network ...
Configuring site-to-site VPN on 2821. Remote endpoint is 7206. On 2821, have 2 active interfaces, serial facing the ISP and Ethernet facing LAN. Tunnel endpoint on 2821 is terminating on LAN facing Ethernet interface. Question is this, do I need ...
any help is greatly appreciated. i have 2 pix 535 firewalls. neither have been configured yet. one has a UR license the other a FO license. both came with the 6.3(4) code. i would like to upgrade them to the 7.0 code. can i upgrade each seperat...
We have a 12Mbps connection to the Internet at work. Is it a fair statement to say that I can add together the input rate and output rate for the serial interface to get an idea of the total bandwidth being used on the circuit?thanks in advance.
That is what I thought. However I cannot seem to get the FO pix to finish the code upgrade. According to documentation, upgrading via monitor mode is required as going to 7.0 first reformats flash while only loading 7.0 code to RAM. At this point ...
ok, i did not relize you could have bi-directional communication with only a static statement. I was under the assumption that the static statement would need to be combined with an access-list. thanks for the clarification.
thanks again for the reply. i guess my question is this; does the static nat statement provide the same function as the one-to-one nat/global statements provided in my example?thanks.