Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello All,I am in the process of migrating from a PIX 515 running 7.2 to an ASA 5520 running 8.3 and I'm having an issue with the new NAT commands. Currently I am using PAT in the following manner:static (inside,outside) tcp 10.10.10100 41056 192.168...
We have a site to site VPN using a pair of PIX 515's in the primary site that works fine almost all the time. Once in a while the remote side cannot access anything in the primary site and it seems that doing a clear crypto and clearing the tunnel fi...
I am having an issue managing an ASA5505 across an IPsec tunnel. I've enabled the inside management interface, but when I try and access via ASDM, I get an "unexpected end of file error".I am using 8.02 and ASDM 6.02. I can access the command line vi...
I have created a site to site tunnel between two organizations. Org A wants to limit Org B to specific TCP ports on the destination hosts. Can this be done on the Org A PIX? I believe I could limit it by changing the cryptomap ACL on the Org B PIX, b...
Looking to create a hub and spoke VPN with ASA devices. Will use ASA5505's in the branches. Looking to determine what model to use in the head office. There will be approximately 80 small branches connecting back. The 5510 says it will do up to 250 s...
Thanks and that works except...it only allows me to PAT one TCP port to an inside address at one time.So if I want to do the following:static (inside,outside) tcp 10.10.10.100 41056 192.168.1.108 41056 netmask 255.255.255.255static (inside,outside) t...
I am looking to do a similar thing, except that I'd like to lock it down to a single TCP port. Will you please post a sample config as mentioned above?Thx,
I have a similar issue as the first post. However, I have IPSec connectivity to the PIX that works fine. If I use the Cisco VPN client, I can authenticate to the PIX and have complete access internally.If I use PPTP, I can authenticate to the PIX, bu...