Hi there, I'm quite new to the world of PIX's and have recently bought and configured a PIX 515 for use on our network.
I've managed to configure it using it's CLI to do standard firewall stuff for our network and to route through port 25 for email delivery to our Exchange server.
Problem is we have another site that connects into us and relys on us for the web.
Historically we had ISDN Dial on Demand which our other site accessed via a proxy server at our site.
Now, the routing I have set up correctly as far as I can see. Our servers have a DG of our Kilostream router of which is configured to send all 0.0.0.0 to the PIX. This works fine. Similarly, our remote site's kilostream router sends all 0.0.0.0 to our Kilostream router which should then in turn point it into the direction of the pix.
Remote site can ping all machines/servers here but never the PIX itself.
This leads me to think the PIX not having some kind of DG for our other subnet I presume? How do I specify this?
Our subnet is 192.168.1.0, remote site 192.168.2.0, Kilostream routers have a mini subnet between eachother of 192.168.100.0 but I don't think thats applicable - but just in case you need to know
I would really love your help on this one guys as it's driving me mad and I'd loath to put in place another proxy server.
Thanks!
P.S: I configured the PIX515 using both docs and this website as reference. Fantasic forum this!!
I've managed to configure it using it's CLI to do standard firewall stuff for our network and to route through port 25 for email delivery to our Exchange server.
Problem is we have another site that connects into us and relys on us for the web.
Historically we had ISDN Dial on Demand which our other site accessed via a proxy server at our site.
Now, the routing I have set up correctly as far as I can see. Our servers have a DG of our Kilostream router of which is configured to send all 0.0.0.0 to the PIX. This works fine. Similarly, our remote site's kilostream router sends all 0.0.0.0 to our Kilostream router which should then in turn point it into the direction of the pix.
Remote site can ping all machines/servers here but never the PIX itself.
This leads me to think the PIX not having some kind of DG for our other subnet I presume? How do I specify this?
Our subnet is 192.168.1.0, remote site 192.168.2.0, Kilostream routers have a mini subnet between eachother of 192.168.100.0 but I don't think thats applicable - but just in case you need to know
I would really love your help on this one guys as it's driving me mad and I'd loath to put in place another proxy server.
Thanks!
P.S: I configured the PIX515 using both docs and this website as reference. Fantasic forum this!!