Hi,
this is possible. However, it depends how you've configured the device. Can you paste a copy of the config? (Just the NAT, Policy and Interface specific settings)
Darren Campbell
Technical Design Architect
Try something like http://www.netswitcher.com/
Allows you to setup profiles of each network and then it's a single click to switch networks...
Darren Campbell
Technical Design Architect
Unfortunately not, these applications all use standard http. You need something signature based. there are lot of solutions out there, it depends how much you want to spend. Just search fot "block kazaa" in a search engine like google.
Darren Campbell
Technical Design Architect
It depends... What IP Subnet do you use between the PIX and external Firewall? Is this going to be changed because you are deploying a new router with a new IP range, etc? Give a bit more detail explaining specific IP addresses.
Darren Campbell
Technical Design Architect
This doesn't necessarily mean that the remote sites aren't visible. The Firewall is simply saying that it's not gonna tell your workstation how to get to these remote networks because ICMP redirects are disabled. I would approach it from another angle and try pinging the remote networks from...
Have you tried "hard setting" the IP Address on the PDA's and seeing if you can gain access to the Open SSID?... This would then eliminate DHCP being an issue and point at a 802.11 negotiation issue.
Darren Campbell
Technical Design Architect
Woops.. Sorry, that was a total typo!! A MIP is a one-to one mapping.. Whereas a VIP is a mapping based on destination port number...
Darren Campbell
Technical Design Architect
You have 2 options, you either enable static NAT using a VIP which will in turn allow 2 way communications; be sure 2 use a subnet mask of 255.255.255.255 for one-to-one NAT's. Dynamic NAT is automatically enabled when an inbound rule is created.
Darren Campbell
Technical Design Architect
Hi,
Sorry, but are you saying that if you initiate a Ping from the 10.0.0.x network to the internal interface of the netscreen and run a Sniffer out of the back of the gateway server, you observe no traffic?
Darren Campbell
Technical Design Architect
Hi, is your wireless network configured? Do you use WEP or 802.1x? Are you even able to attempt to connect to the Wireless network from the PDA's?
Darren Campbell
Technical Design Architect
Sounds like an MTU problem I've seen in the past. Lower the MTU size of packets connecting to the VPN from the Client. Thsi should resolve the issue.
http://support.microsoft.com/default.aspx?scid=kb;en-us;826159
Darren Campbell
Technical Design Architect
Hello mate... What's the problem exactly? Can you verify the following:
1) The Mail server object is setup with the correct IP Address, static NAT entry and corresponding firewall rule.
2) The external NAT entry is routable from the external network. So what IP Addresses/Subnet mask are you...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.