Questions tagged [cisco-pix]

The Cisco PIX line of products were devices that provided firewall and VPN functionality.

The Cisco PIX line of products were devices that provided firewall and VPN functionality.

They have been replaced by the Cisco ASA line of products. Many of the configuration commands used in PIX are the same or similar to those used in ASA, particularly earlier versions of the ASA operating system (version 7.x). Therefore, many useful answers to PIX related questions may be found under Cisco-ASA questions.

85 questions
1
vote
1 answer

Can I use Linux iptables to replace the functionality of a Cisco ASA/PIX?

I know iptables can route packets like a router. I've read tutorials where a Raspberry Pi can replace a home router. iptables can allow only specific ports through. However, in my enterprise environment, I have 32 WAN IPs - not all are in use - with…
user38537
  • 293
  • 3
  • 15
1
vote
2 answers

Cisco VPN Client dropping connection

Using Windows XP and Cisco VPN client version 5.0.4.xxx to connect to a remote customer site. We are able to establish the connection and start an RDP session, but within 1-2 minutes the connection drops and the VPN connection disconnects. The PC…
IT Team
  • 113
  • 1
  • 5
1
vote
2 answers

Why do they call it "inside_access_in"?

I am looking at some configurations for Cisco FWSM devices and I notice a common notation for an ACL name called inside_access_in. But I am commonly seeing ACEs that are for allowing internal machines to access specific resources on the…
Corey S.
  • 2,487
  • 1
  • 19
  • 23
1
vote
1 answer

How can I remove the ACL of PIX firewall?

I'm just trying to how PIX works. Anyway how can I remove the ACL from my GNS3's PIX? PIX-SECU(config)# show access-list access-list cached ACL log flows: total 0, denied 0 (deny-flow-max 4096) alert-interval 300 access-list 1; 1…
1
vote
2 answers

Cisco and HP backups to Spiceworks TFTP occasionally creating .tmp files

We are backing up our ASAs and switches using some scripting. It works very well. I have noticed though, occasionally, the backups to the TFTP will come out not as plain "files" with no extension, rather .tmp files. Curious as to the cause. I have…
TryTryAgain
  • 1,152
  • 5
  • 22
  • 41
1
vote
1 answer

set Cisco Pix back to default settings

Trying to wipe my Cisco pix back to factory default. i login to the pix as an admin then type "configure factory-default" this doesn't work though
ben950
  • 319
  • 2
  • 8
  • 18
1
vote
1 answer

Configure Cisco Pix 515 with DMZ and no NAT

I hope that someone could shed some light over my situation, as I am fairly new to PIX configurations. I will be getting a new net for my department, which I am going to configure. At my hands, I have a Cisco PIX 515 (not E), a Cisco 2948 switch…
Rickard
  • 145
  • 1
  • 7
1
vote
1 answer

Juniper SRX1400 VPN

I have been trying to set up a client VPN on a Juniper SRX1400 without much success. All documentation I found from Juniper and elsewhere does a lot of other (difficult and wonderful) things other than the simple things I want to do. We already have…
ank
  • 700
  • 5
  • 13
1
vote
1 answer

Configuring a PIX to allow SMTP between DMZ and internal network

I have a Web Server (193.170.4.2) in my DMZ that needs to communicate with the our Exchange Server (10.77.51.87) internally via SMTP. I used access-list acl-dmz permit tcp host 193.170.4.2 host 10.77.51.87 eq smtp, but it did not work. Is it…
chinni
  • 11
  • 1
1
vote
0 answers

Is there a way to have VPNC failover automatically to a second Cisco firewall?

I'm currently using VPNC on my Ubuntu machine to VPN to a remote Cisco firelwall. It's critical for this VPN connection to be up at all time. Is there a way to have VPNC failover automatically to a second Cisco firewall in case the main firewall…
itgorilla
  • 193
  • 7
1
vote
1 answer

Can the ASA 5505 use pptp as the VPN type? If so does anyone have a link to a config example?

I'm migrating from a PIX to a ASA and the PIX has the remote users PPTP to it. This is not pass though but the VPN type of the PIX. Does the ASA even support this? I have been trying to search around but all I have found is for allowing PPTP pass…
evolvd
  • 1,384
  • 6
  • 33
  • 58
1
vote
1 answer

Configuring PIX 506 with NAT for multiple public addresses

We are setting up a streaming service to an external client and they need access to an internal workstation along with certain ports open on our firewall. I need to configure two public IP addresses on a PIX 506 to map to two internal private…
Kernel Panic
  • 291
  • 2
  • 8
  • 19
1
vote
1 answer

Utilizing two outside internet subnets - routing or physical connection ideas?

I am looking for some ideas on how I might utilize a second 5 internet ip address subnet I have available from my isp. Currently I have the isp cable modem which has 5 ethernet ports on it. It is not (and probably can not) providing any firewall or…
Scott Szretter
  • 1,882
  • 11
  • 43
  • 66
1
vote
1 answer

Cisco Pix how to add an additional block of static ip addresses for nat?

I have a pix 501 with 5 static ip addresses. My isp just gave me 5 more. I am trying to figure out how to add the new block and then how to nat/open at least one of them to an inside machine. So far, I named a new interface "intf2", ip range is…
Scott Szretter
  • 1,882
  • 11
  • 43
  • 66
1
vote
1 answer

trying to prevent ddos with cisco pix 501

I'm getting dos on a dedicated server with windows+apache, ive asked support to install a firewall and got a cisco pix 501, the attacks are on port 80 to a certain site, what can I do to block it? I thought of putting a cap on amount of…
tridant
  • 11
  • 1