RE: PIX 515 question

2001-11-15 Thread Johnston Mark
Title: RE: PIX 515 question Hi, First thing that you need to check is your security levels. I am most definitely assuming that your internal is a greater value than the DMZ. This can be checked by typing sh nameif. Traffic is allowed by default from a higher value to a lower (Eg. 100 -- 25

RE: PIX 515 question

2001-11-15 Thread Daniel Crichton
On 15 Nov 2001 at 10:11, Johnston Mark wrote: Another thing to check is that you are actually connecting to the right IP address this makes a difference if you use non-routable ip's in your dmz. Lets say that you connect to www.test.com doing an nslookup might reveal the legal ip (Eg.

RE: PIX 515 question

2001-11-15 Thread Kent Hundley
Frederic, Your a little sparse on details like IOS version, NAT setup, etc., but there's no reason that what you want to do cannot be done. There are examples of what your trying to do with and without NAT on the Cisco web site (watch the wrap):

RE: PIX 515 question (Thank you)

2001-11-15 Thread Frédéric Médery
It was my first question to the ML, Thank you very much for the great input !! F ___ Firewalls mailing list [EMAIL PROTECTED] http://lists.gnac.net/mailman/listinfo/firewalls

Re: PIX 515 question

2001-11-15 Thread Brian Ford
: =?iso-8859-1?B?RnLpZOlyaWMgTelkZXJ5?= [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: PIX 515 question Date: Wed, 14 Nov 2001 19:01:13 -0500 The network DMZ-PIX-LAN | | INTERNET We have a IIS web server inside the DMZ. I'm trying to access the web site

Re: PIX 515 question

2001-11-15 Thread bob bobing
?B?RnLpZOlyaWMgTelkZXJ5?= [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: PIX 515 question Date: Wed, 14 Nov 2001 19:01:13 -0500 The network DMZ-PIX-LAN | | INTERNET We have a IIS web server inside the DMZ. I'm trying to access the web site

PIX 515 question

2001-11-14 Thread Frédéric Médery
The network DMZ-PIX-LAN | | INTERNET We have a IIS web server inside the DMZ. I'm trying to access the web site (in the DMZ) from a station inside the LAN. We cannot access the web site. A guy told me that i was not possible (a NAT problem ?) with the pix or

PIX 515 question

2001-09-13 Thread Daniel Mester
Hi all, we are going to purchase Cisco PIX 515 (restricted) with 3 interfaces. I know that 3-rd interface has 4 ports. Can i run 4 different subnets on this interface (i.e. it has to have 4 ip's ) and would it work? Thanks. Daniel Mester. ___

Re: PIX 515 question

2001-09-13 Thread Avishai Wool
Daniel, I thought the PIX 515 normally came in 2, 3, and 6 port configs (3 == 2 on chasis + 1 extra NIC in expansion slot, total 3 RJ45 ethernets) (6 == 2 on chasis + 1 quad-card NIC in expansion slot, total 6 RJ45) which one are you purchasing? if you are getting the 3-port version, AFAIK

Re: PIX 515 question

2001-09-13 Thread Matthew Shine
Daniel Mester wrote: Hi all, we are going to purchase Cisco PIX 515 (restricted) with 3 interfaces. I know that 3-rd interface has 4 ports. Can i run 4 different subnets on this interface (i.e. it has to have 4 ip's ) and would it work? Thanks. I am currently working on installation of a

Re: PIX 515 question

2001-09-13 Thread Michael Janke
Daniel Mester wrote: Hi all, we are going to purchase Cisco PIX 515 (restricted) with 3 interfaces. I know that 3-rd interface has 4 ports. Can i run 4 different subnets on this interface (i.e. it has to have 4 ip's ) and would it work? Thanks. The 515R only supports 3 interfaces. You'll