Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Search results for query: *

  1. fraustbyte

    Unable to establish VPN connection from behind ASA 5505

    I have tried forcing NAT-T in the Greenbow client but that doesn't seem to make any difference. As far as following the instructions for configuring a Linksys router with the Greenbow client, as mentioned I have used the Greenbow with this particular Linksys VPN gateway for about a year and can...
  2. fraustbyte

    Unable to establish VPN connection from behind ASA 5505

    It is without any doubt a NAT related issue. A few questions: I'm assuming the default configuration is for PAT? Especially since I have only a single dynamically assigned ip address on the outside interface from my ISP. If that is the case would it be any different when I had a Linksys router...
  3. fraustbyte

    Unable to establish VPN connection from behind ASA 5505

    More interesting information: I have a different computer, a laptop configured with a Nortel Contivity VPN client which I use to access a different network. Interestingly from my internal network located behind the ASA 5505 I am ABLE to establish a VPN connection to a different remote network...
  4. fraustbyte

    Unable to establish VPN connection from behind ASA 5505

    OK. I changed the capture access-list as requested however the second entry you provided was not accepted as you had typed it out above. It reported back that there was a problem with "any" but only for the second entry. I replaced "any" with "0.0.0.0 0.0.0.0". I hope that is the same in this...
  5. fraustbyte

    Unable to establish VPN connection from behind ASA 5505

    Here is the result of the capture: ****** START ******* 2 packets captured 1: 11:33:46.375697 802.1Q vlan#2 P0 ###.###.###.###.33 > @@@.@@@.@@@.@@@.500: udp 160 2: 11:33:46:863450 802.1Q vlan#2 P0 @@@.@@@.@@@.@@@.500 > ###.###.###.###.500 udp 84 2 packets shown ******* END...
  6. fraustbyte

    Unable to establish VPN connection from behind ASA 5505

    You bet. Here you go. : Saved : ASA Version 7.2(3) ! hostname ciscoasa domain-name default.domain.invalid enable password 8Ry2YjIyt7RRXU24 encrypted names ! interface Vlan1 nameif inside security-level 100 ip address 192.168.1.1 255.255.255.0 ! interface Vlan2 nameif outside...
  7. fraustbyte

    Unable to establish VPN connection from behind ASA 5505

    I have a brand new out-of-the-box ASA 5505 that has been setup to provide firewall protection to small SOHO environment. I need to be able to establish a VPN connection to a distant site from the SOHO network behind the ASA. This does not work successfully with the default configuration. Can...
  8. fraustbyte

    Help with forwarding mail to "Smart Host"

    Resolved. This is the second issue that I thought was potentially related to the Cisco PIX that has turned out to be something else. It's completely unrelated to the purpose of this thread but the resolution involved configuring the relay settings in IIS properly. I greatly appreciate...
  9. fraustbyte

    Help with forwarding mail to "Smart Host"

    I'm running a Windows 2003 SP2/IIS 6.0 server behind a Cisco PIX 506e and have the SMTP service configured to route/forward all email generated by different web sites hosted on that server to a "Smart Host". That "Smart Host" is an SMTP server on my ISPs end. Right now mail isn't getting over...
  10. fraustbyte

    Help with forwarding SMTP to "Smart Host"

    Sorry, I meant to put this on the PIX forum. Please disregard this post and look to the PIX forum if you can help me out. I'll place this post there. Thanks.
  11. fraustbyte

    Help with forwarding SMTP to "Smart Host"

    I'm running a Windows 2003 SP2/IIS 6.0 server behind a Cisco PIX 506e and have the SMTP service configured to route/forward all email generated by different web sites hosted on that server to a "Smart Host". That "Smart Host" is an SMTP server on my ISPs end. Do I need to allow any particular...
  12. fraustbyte

    Help with using multiple external IPs (506e)

    Never mind, I figured it all out. My configuration was OK on the PIX. As it turns out I had an issue with the second web server and didn't even think to consider something other than the PIX was the problem. I resolved the web server issue and have access externally (using different external ip...
  13. fraustbyte

    Help with using multiple external IPs (506e)

    Ok thanks. I think I have that part covered. What should my "global" configuration look like?
  14. fraustbyte

    Help with using multiple external IPs (506e)

    I have multiple external IP addresses that I want translated to multiple internal IP addresses (multiple web servers) and I'm having trouble getting it to work for anything but a single external address. What do you need to configure to do this?
  15. fraustbyte

    Date Modified changes after Restore

    After having restored data backed up by doing a "Copy" I'm losing all of the original file creation/modified date information for the original files. I'm restoring from a Windows 2000 server (Backup Exec 10) to a Windows Server 2003 SP2 server. After the restore if I view the restored data on...
  16. fraustbyte

    NTP Authentication Process

    No need to reply here. For anyone else'e interest this is one of the sources I found helpful on the matter. http://www.eecis.udel.edu/~mills/database/brief/autokey/autokey.ppt What I'm trying to find now is a list of public access Stratum 2 NTP servers that provide authentication. Does anybody...
  17. fraustbyte

    Block ping on 506E

    Quoting directly from the Cisco PIX 506E manual: The icmp command controls ICMP traffic that is received by the firewall. If no ICMP control list is configured, then the PIX firewall accepts all ICMP traffic that terminates at any interface (including the outside interface), except that the PIX...
  18. fraustbyte

    NTP Authentication Process

    Can someone explain how the NTP authentication process works?
  19. fraustbyte

    506e - Need help with configuration

    Ok, so just so I'm clear with reference to "1.)" about DNS traffic did you mean that I need an entry for both "tcp" and "udp" dns traffic?
  20. fraustbyte

    506e - Need help with configuration

    Two other questions: 1.) If I want to allow hosts on the inside to be able to browse the web do I need the following?: access-list access_list_in permit udp any any eq domain 2.) If I want to use an external time source do I need the following?: access-list access_list_in permit udp any any...

Part and Inventory Search

Back
Top