Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Search results for query: *

  1. don1907

    UDP Forwarding on Cisco ASA-5510

    I have a user that needs to send udp info thru the firewall to an internal server He is trying to send via udp://38.100.31.xxx:20500 which should go to internal server 192.168.30.yy which is 2008R2 with firewall turned off The packets never get thru On the ASA I have the following setup for...
  2. don1907

    tunnel 3389 from Lan to 2003 dmz server on pix

    I am trying to enable and tunnel RDP on 3389 thru ssh to a server on our dmz. I am able to ssh and run commands and am able to browse web sites on the DMZ from our LAN. Any ideas?
  3. don1907

    Web site publishing

    I have a app running on an 2003 IIS box. There are other sites running on port 80 with no problem The application that I am having problems with is running on port 8080 on the same IIS server It is running internally on port 80 with an IP address of 192.168.30.30 and has a index page that...
  4. don1907

    Web Publishing

    I have a tomcat site on the same server with iis. IIS uses a .20 IP and goes externally to .213 The tomcat site uses .30 and externally goes to .219 the rule is: static (inside,outside) tcp 66.173.204.219 www 192.168.30.30 8080 netmask 255.255.255.255 0 0 It fails to open using...
  5. don1907

    Web Publishing

    ...vpngroup VPNAdmins split-tunnel VPNAdmins_splitTunnelAcl vpngroup VPNAdmins pfs vpngroup VPNAdmins idle-time 1800 vpngroup VPNAdmins password ******** vpngroup VPNUsers address-pool EPANatPool vpngroup VPNUsers dns-server 192.168.30.21 192.168.30.26 vpngroup VPNUsers default-domain...
  6. don1907

    Web Publishing

    I have created a rule that should open an ip adress on the friewall to an internal server, Internally the web server works fine, externall no connect by IP. Here is the rule access-list acl_out permit tcp any host 66.173.204.217 eq www static (inside,outside) 66.173.204.217 192.168.30.90...
  7. don1907

    Slow T1 downloads

    Here is the PIX Stats epa515(config)# show interface interface ethernet0 "outside" is up, line protocol is up Hardware is i82559 ethernet, address is 000f.34ac.f208 IP address 66.173.204.210, subnet mask 255.255.255.240 MTU 1500 bytes, BW 100000 Kbit full duplex 1185062612 packets...
  8. don1907

    Slow T1 downloads

    Here are the interfaces INETRTR-1760>sh int f0/0 FastEthernet0/0 is up, line protocol is up Hardware is PQUICC_FEC, address is 000b.be90.1d55 (bia 000b.be90.1d55) Internet address is 66.173.204.209/28 MTU 1500 bytes, BW 100000 Kbit, DLY 100 usec, reliability 255/255, txload 1/255...
  9. don1907

    Slow T1 downloads

    I have changed it to 1500. It seems to be slow on the download side with any site I go to. I just did a speed test and my up was 1300 and down was 597. We have only 5 users on the network today.
  10. don1907

    Slow T1 downloads

    ...neighbor alias exec sei show ip eigrp inter alias exec sen show ip eigrp neighbor alias exec set show ip eigrp topol alias exec cir clear ip route * alias exec cib clear ip bgp * alias exec cor clear ip ospf redist alias exec cxr clear ipx route * alias exec sip show ip protocols alias exec...
  11. don1907

    Slow T1 downloads

    We have noticed a real slow internet onnection when downloading. We ran speed tests and we get 1447 up and 600 down. We have a CISCO 1760 router and a Cisco Pix 515e.I have checked the speed and duplex on both the router and PIX and they are the same. What else should i check?
  12. don1907

    DMZ users access to internal web sites

    I looked at the ip configuration of the wifi client on the DMZ. He gets an IP 0f 172.16.253.x..... My DNS servers he gets his info are on the outside at Cavalier. Those DNS servers give the IP of 66.173.204.213 for the web site. I added, access-list DMZ_outbound_nat0_acl permit ip...
  13. don1907

    DMZ users access to internal web sites

    the web server is 192.168.30.20
  14. don1907

    DMZ users access to internal web sites

    ...vpngroup VPNAdmins split-tunnel VPNAdmins_splitTunnelAcl vpngroup VPNAdmins pfs vpngroup VPNAdmins idle-time 1800 vpngroup VPNAdmins password ******** vpngroup VPNUsers address-pool EPANatPool vpngroup VPNUsers dns-server 192.168.30.xx 192.168.30.xx vpngroup VPNUsers wins-server 192.168.30.xx...
  15. don1907

    DMZ users access to internal web sites

    I have WiFi users using a access point on our DMZ. The users are stating they cannot access our web site or sharepoint portal on the internal network. They can access the sites if off site. What rules or access lists need to be setup for this configuration.
  16. don1907

    AAA Accounting

    I added aaa accounting include any inbound 0 0 0 0 TACACS+ to the pix and then recieved a message No authentication servers found!
  17. don1907

    AAA Accounting

    All our users are using VPN from the outside to resources on the LAN. Does this command make any sense. aaa accounting include any inbound 0 0 0 0 TACACS+
  18. don1907

    AAA Accounting

    What is the proper command line to use for aaa accounting? Ia am fairly new to PIX
  19. don1907

    AAA Accounting

    I have added the following lines, and the sections on the pix looks like logging on logging timestamp logging standby logging console critical logging monitor debugging logging buffered debugging logging trap informational logging history informational logging queue 3000 aaa-server TACACS+...
  20. don1907

    AAA Accounting

    I wish to setup accounting on our pix 515e firewall. We are running 6.3(3). What is the the proper aaa accounting command to get full logging to show in the ISA logs. Listed below is the aaa section on the PIX aaa-server TACACS+ protocol tacacs+ aaa-server RADIUS protocol radius aaa-server...

Part and Inventory Search

Back
Top