Hello
I have been given a network design to look at and need some advice.
there is no currently installed infrastructure.
the solutions is for metro ethernet access using 1800 + 8600 units.
new fibre rings through buildings looping back to the 8600's.
I can see that this is good for...
ok got it working
i added the fixup line and I also added an entry on my inbound access list for my outside interface to allow udp 500 and esp in
works a treat
many thanks
I have added the fixup protoocol esp-ike
this states that only supports one tunnel at a time , which is fine
what I am intertested in are the ports I need to redirect using PAT, or do all connections start from client outwards ( thus automatically creating inbound access using the esp-ike...
i was trying to setup edonkey through my pix with PAT and was getting the same problem.
I did my static maps and my access list.
but was getting the (no xlate) message
I then checked the inbound access list and saw that I had source ports set to a specific port. changed it to any >1023 and...
This info is great.
But from what you have said this solution is only good for static NAT
I only have one Public IP and need to use PAT
so I suppose I need to do some port mapping,
my inside interface allows all traffic out so I am only worried about return traffic.
can this be done?
thanks
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.