In addition to previous answer, you will need either:
A "static" rule for the workstations that initiates VPN, and a rule for inbound GRE or ESP traffic (depending on the type of VPN).
OR:
Upgrade your pix to latest version 6.3x which has limitted (single session as far as I know) support for both ESP or PPTP over PAT:
Cisco PIX Firewall Release Notes Version 6.3
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.