The only thing that worked was changing the IP address of the server which had a PAT, 2.2.2.138, to a NAT instead. Problem went away. This was only a problem between site-to-site VPN's between FW's using PAT on both sides, from what I can see. I tried all the other things before, none of those...
We have a PIX 515 here v6.2(2). We're using PAT to decide which internal server to go depending on which service is requested: e.g.
static (inside,outside) tcp 2.2.2.138 6869 1.1.1.139 6869 netmask 255.255.255.255 0 0
static (dmz,outside) tcp 2.2.2.138 ftp 1.1.1.21 ftp netmask 255.255.255.255 0...
You need to purchase an UNRESTRICTED license as below:
PIX 515 Firewall—Restricted to Unrestricted software upgrade. Requires PIX-515-MEM-32
PIX-515-SW-UPG=
To clarify the problem:
- Two seperate groups of users require access to different resources behind the PIX.
- The two groups need to have different IP Pools (so they can be restricted to specifed services using access-list) and they need to be authenticated using different servers (ie 2...
I already have the groups configured with different pools and auth servers, but how do you configure the PPTP client (eg Win2K) so that it uses the preferred vpdn group?
Hi
We run a shared PIX firewall for two customers and we require remote users for both customers to VPN to their respective LAN's after 1. authentiating against a RADIUS server and 2. receiving an IP address from the respective group/company's pool. My question is how will the PIX know which...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.