Thanks for your posts - wdoellefeld , NetIntruder , ReddLefty -
I am confident that the clients are setup correctly. This issue is a recent occurance (it seemed to begin after installing and configuring RAS on our PDC) it was not a problem prior, and the DHCP/DNS/WINS have all been in place and...
Recently we have had trouble with browsing for computers in the "Network Places"
We are running a Win2K server- On the Server we are running DNS, WINS, DHCP, RAS...
The problem all seemed to start after installing RAS, prior to that everything seemed to work fine. So my assumption of browser may...
Thanks for the response lgarner
I get a response -
Connecting To 172.16.10.1...Could not open a connection to host on port 23 : Connect failed
I have checked the config and telnet and http enabled. There seemed to be a problem with the Names settings -
I went to delete the http "name"...
While out on a medical our network came to a screehing hault!
It seemed to be a DNS problem. Internal DNS proved to be working fine. Some clients had access to outside, most did not.
I suggested a reboot of the 1721 Router and PIX515E. This fixed the problem. (I guessing from what I've read here...
Actually think I may have found the answer to this one myself.
Apparently I had a bad config statement on my router that did not allow me to see the outside translated address of the Exchange box from the inside net.
After fixing this route statement I am able to connect to the Exchange server...
We have a pix515 that I am trying to setup to allow a couple of users on the inside to establish VPN connections to a MS RAS server on the outside using PPTP.
I have NAT & PAT setup on the PIX -
Currently all inside host are getting NAT/PAT to outside address pool - see following config data...
I have recently set up an exchange server 5.5 SP4 running on the inside of my pix firewall.
Thanks to the help of responses on this site all is working well.
But I am now faced with a small dilema.
Our president uses a mobile computer and spends about 50% of his time at another facility. I am...
Routerman,
Just wanted to let you know...I did not correct the access list for the pop3 port.
Now that I have done this all is working.
Thanks for all your help.
Question: If I am using exchange client inside, and web access outside, the only ports I really need open are http and smtp...
Andy,
Thanks for responding...you were absolutely correct. I now have web access. I am still getting an error when I try to connect using pop3...
Error message - The specified server was found, but there was no response from the server. Please verify that the port and SSL information is...
Well I am back...I finally resolved the main problem!
Apparently there was mis-communication between myself and our ISP. They had assigned, or I configured with an incorrect IP address pool. Since discovering this I have been able to remove all nat statements from the router and traffic flows as...
Actually, after about 3 seconds of thinking about it, I remebered a little thing about Routing Tables...
If my router has a static route entry and it is connected to my ISP's router, then the ISP's router should know how to get to my other subnet via the routing table. Should it not?
Routerman!
It is funny how something so simple can be overlooked.
I have a feeling you are correct, without a static route on our ISP's router no way back...
I will let you know how that turns out - if successful then I will work on getting rid of the NAT on our router again.
Well I am back....
Thanks for your suggestions! But -
I removed all of the nat stements from the router, saved and reloaded and all http and smtp traffic from inside to outside was blocked
This can be so frustrating - I have read so much info stating just do this an voila but this has yet to...
Thanks for the reply routerman!
No I don't think I need NAT on the router, this is left from the previous config before the pix.
Yes all traffic including smtp, http, icmp gets out and back. I just can't get to the Public IP of the Exchange box from beyond the router. I can telnet from either...
I have just installed a Pix515. My intention is to allow traffic to Exchange Server on inside of Pix. I want to allow all traffic for smtp, pop3, OWA (Http) for now until I setup certificates. I have no trouble with outbound traffic. I have set up a static translation to the Exchange Box on the...
Before I was tasked to fix this problem someone came in and changed policies/registry on a few machines making them hidden in the local network. I can ping them, and they can see everyone else in the network, however no one can see them from the nethood, and I can not access them using thier ip...
Oh -
I thought that the way I had it configured it would use NAT (as you said allowing 4 translations) then it would use PAT for any above and beyond that?
Is this not correct?
-DKM
Doesn't the first statement enable NAT
and the second enable PAT ?
If so is there an advantage to using NAT over PAT ?
Do you run out of addresses/ports ?
We only have about 50 Hosts so...
global (outside) 1 xx6.158.224.107-xx6.158.224.110
global (outside) 1 interface
nat (inside) 1 0.0.0.0...
I have just installed a new PIX515E and some hosts are being denied access outside. When I ping the inside of the pix on host not able to get out, some respond, and some timeout - although the pix shows the request and response on all?
We are using an internal DNS for name resolution which...
Then i need to use NAT on the router?
I don't understand why I can't use NAT on the PIX.
Cant I just use the PIX as the gateway for my internal host, then route through the PIX to the router and allow all
traffic through the router?
Isn't this the common practice?
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.