Finally the problem was with the default values of the timeout parameter wich I needed to change in order to work correctly. Solved. Thanks to all for your answerings
Sorry, I forgot to say that there is a nat 0 access-list between both two interfaces so traffic is allowed without translation, i.e. routing.
To be clear ALL IP is allowed between both interfaces and a NAT 0 ACCESS-LIST is used between them.
There are a lot other connections in between but...
Hi forum,
I have a problem with a PIX 525. It is configured with an interface acting as a DMZ (called dmz_wan) where all traffic is permitted and no translation between this interface and the inside interface.
There is an application server in inside (192.168.0.16) listening at port 211/tcp...
Another option, although it is not directly related to the PIX is to use a DNS server that permits views, so you can discriminate the origin of the query and answer accordingly
Thanks a lot Yizhar for answering.
I've managed to solution the problem in another way by publishing the radius server to the Internet (with a public IP address) and performing athentication from PIX2 via that public IP.
Putting a second radius server behind PIX2 is not a solution for me...
Hi forum:
I have 2 PIX 501 running a LAN to LAN VPN between them without problems. Say PIX1 is the HQ located PIX and PIX2 is the remote office PIX. I've installed a RADIUS server in the HQ LAN (inside interface of PIX1)
I can authenticate remote users using VPN 3000 Client on PIX2 locally...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.