Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Connection limit

Status
Not open for further replies.

cygnusman

IS-IT--Management
Jun 19, 2002
22
GB
I have got our PIX 501 working OK for basic HTTP traffic. I can access the web from most of our workstations BUT not all. It seems I may have the 'connectivity problem' mentioned in another query (thread35-253192). His cure was to upgrade to PIX621.BIN.

All machines running W98 or NT4. Soemtimes will connect but sometimes not. When connection fails I have found that there are 4 or 5 connections shown in console for PIX. If I clear xlate the failed machine will then connect and another will not.

I definitely have a 10 user PIX.

Ideas will be gratefully received.

Thanks

 
HI.

When you have the problem, what do you get with:

show xlate

What is your current pix version?
Why not open a TAC case and upgrade to latest version?

You can try to avoid unwanted connections in several ways
(I'm not sure which is best but you can try):
Only configure "default gateway" on hosts that are allowed to go out.
Configure nat only for hosts that are allowed to go out, like:

nat 1 192.168.1.7 255.255.255.255
nat 1 192.168.1.15 255.255.255.255
nat 1 192.168.1.35 255.255.255.255
nat 1 192.168.1.87 255.255.255.255
nat 1 192.168.1.111 255.255.255.255
nat 1 192.168.1.2 255.255.255.255

Bye
Yizhar Hurwitz
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top