never mind my comments on the access lists... I read them wrong.
I would create a single access-list for inbound access and specifiy the outside address for the static >
access-list outside_in permit icmp any any echo-reply
access-list outside_in permit icmp any any time-exceeded
access-list...
you don't need an access list for outbound access unless you want to limit outbound access to only specific protocols, IP, etc.? By default, all outbound access is allowed.
Do you only have a single external public IP address or a range? This would affect how you would setup the statics...
Can someone point me in the right direction to setup a
PIX to PIX / "Site to Site" IPSec VPN when both the local and remote subnet are using the same subnet? I've googled it and searched Cisco.com to no avail...
What's the preferred method to configure Liveupdate in a SAV CE 10 corporate WAN environment? Assuming there are like 20 servers scattered around the country, all with access to the Internet and each server has ~50 clients. It appears that by default, all clients and servers are looking to...
When you have ~20 servers with 50+ clients under each one. How on Earth can you tell what version each client is running to keep track of the upgrade process? Clicking on each client and then choosing properties is not acceptable...
Why are you guys building SAV10 servers in parallel to SAV9 instead of simply upgrading the SAV9 server?
I have been asked to upgrade our SAV9 server to SAV10 too but was planning a normal upgrade. Are there known issues with this procedure?
Thanks!
David
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.