Actually all I want to do is have internal users see an external ip as an internal ip. Sort of like making the pix a dns server. The reason is that I have a multinic firewall. Each nic being (obviously) a separate network. On two networks I have two devices that contain the same loopback...
Actually I DO want to see the message but there is a command that allows me to have a buffered window but I don't think the command is 'logging buffered'.
I know that if a line protocol is down on an ethernet interface of a router then I can't telnet to it. Is there a way to fool the router to think that the line protocol is up without plugging anything into the ethernet port.
Chris
I have a 2505 router that I need to apply some security on. I can shut down some ports by using 'no service tcp-small-servers' (and udp) but after running a scan I can still see ports 2001, 4001, 6001 and 9001 open.
What are these ports used for and how do I shut them down without using an ACL ?
Does anyone know how to turn off the modem sound in the modemcap. I used the listed 'M0' command in the miscellaneous settings but it didn't work.
Chris
Solved. Thanks for everyones help.
I was trying to setup NO translation while allowing inbound and outbound traffic flow. Well this is ok for outbound but inbound xlate problems occured until I figured out that nat occurs even if you don't want it. The difference is that on the pix no nat...
True but I can't even ftp from the outside device until I have initiated a ping from inside to the outer device. If I clear xlate after I can communicate then the channel is dead again. What do I need to do to keep this (non translated) channel open ?
I have a strange issue. I have am trying to get a cisco 2513 and pix 515e working together but encounted a weird problem. My 2513 is connected to my inside interface of the pix. I can ping from either side of the 2513 to outside the pix but when pinging from outside the pix I get timed out on...
Actually I was never able to get the 56k usr courier v.everything (model 3CP3453)modem working. Any other modem I tried worked without any effort. My cisco rep simply said 'ok then use a different modem'. So until I find a solution to this problem I can only pass the same advise to you.
Good...
Mistery solved. You gave me an idea with allowing icmp specifically. Even after your icmp acl nothing happened however, it was this idea that solved my problem.
In the pdm under System Properties - PIX administration - ICMP I had to add echo and echo-reply and presto it worked.
Why your rule...
Good idea but no luck. I even changed the default implied acl of any inside allowed out so it is now rule 1 instead of -
I have also tried a different workstation and even added a static route to ensure traffic path is correct.
Could it be an ios problem ? Is it worth upgrading ?
I tried this before but I tried it again for fun and no luck. My acl is the default one which is supposed to allow all inside traffic out. I'm confused. Any other ideas ?
I am learning the old 'jump in and play' method and am having problems. I have setup other firewall before but seem to be having basic problems with my pix 515.
All basic config is entered but I can't ping from my internal network to an external pc. This is on a private lan. I have tried nat...
Thanks for the info. I am using the same router to test several configs used for differnet purposes and segments and I was getting tired of adjusting ip's to do tftp uploads. No worries though, just me being lazy.
I appreciate everyones help in expaning my knowledge.
I can't seem to remove a deleted flash file. I issue the squeeze command but the router doesn't recognize it. How do I remove a deleted flash file on a 2621 ?
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.