Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

General overview of PIX VPN setup

Status
Not open for further replies.

danofre

Technical User
Jul 13, 2001
46
US
Dont go crazy here:
What would be the steps to setup a VPN on a PIX firewall with a windows 2000 domain.
1. What do I need to do on the fiewall?
2. What do I need to do if anything on the servers?
3. How do clients connect? Cicso VPN client?

Just wish i had a checklist to follow.
Thanks
 
What else do you need to know? Do I setup the VPN in Winkdows 2000 server or on the firewall? I will be connecting from my DSL in my home to the company in order to do server maint. over the weekends and stuff.
 
HI.

> What else do you need to know?
Pix OS version + PDM version.
Home PC OS.
Devices in use for the home DSL connection + IP addresses.
Are you using a firewall at home? Which one?
Do you have a fixed IP address at home? If not, can you get one?

You can setup the pix for accepting Cisco VPN client (IPSec) connections, and install Cisco VPN client software on your home PC.

As a general road-map - you can configure the pix and establish "remote access" VPN from your home PC to the pix.
Then add the XAUTH option using IAS (MS RADIUS server) on the W2K server.


Yizhar Hurwitz
 
I have the same questions, excepts I have a WIN2k and Novell 5.x network. I'm using a Pix506e with IOS 6.1 and PDM 1.1. I need to set this up quick, as I have an executive going out on maternity leave. We had a small linux box doing port blocking and DHCP before. I understand programming the PIX as a firewall and DHCP server. I'm having a terrible time getting understanding the VPN side. I have the client loaded on a laptop with Win2k professional. Any help would be appreciated. Thanks.
 
HI.

> I'm using a Pix506e with IOS 6.1
I recommend upgrading to the latest versions.
For version 6.1, you can use both Cisco samples to understand what is going on and what the configuration means:
And then my pixcript tool to help you configure the pix quickly and avoid some common mistakes:

Tip - unlike MS VPN servers, with the Cisco pix you should use non-existing ip addresses for the VPN client - the "ip local pool" command.


Yizhar Hurwitz
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top