Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Traceroute and Pix 515 v6.3 1

Status
Not open for further replies.

crocodanser

Technical User
Sep 25, 2008
19
FR
Hi,

i have a problem with my Pix 515 v 6.3(3). I would like make a traceroute from a inside host toward a outside host.

I tried with this :
but the traceroute can't cross the pix... when traceroute arrive on the Pix, it is in unreachable.

How can i do that?
Could you give me an exemple? What is the rules apply?

thx a lot,
Olivier
 
Forget all that and do

fixup protocol icmp error

That will do the trick as long as you don't block anything with an inside ACL.


Brent
Systems Engineer / Consultant
CCNP, CCSP
 
Thank you for your help.

my config :

access-list INSIDE line 10 permit icmp host myhost any
fixup icmp error


I can cross my pix with traceroute but i can't view hop. Each hop is unreachable... How can i change that??

Thx a lot!
Olivier
 
That depends on what the routers are configured to do between you and the destination. Sometimes I get nothing, sometimes detailed info.

glad it helped

Brent
Systems Engineer / Consultant
CCNP, CCSP
 
Hi,

I think this problem come from pix. because if i do a traceroute, Pix is unreachable too... how can i do for that?

1 <1 ms <1 ms <1 ms 192.168.0.254
2 * * * <--- This is the PIX
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 51 ms 65 ms 31 ms 216.239.59.104

This is an exemple with google

Best regards,
Olivier
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top