The only config that needs a restart (that I can think of) is IPSec tunnels
so they can authenticate. I've never tried without it but cisco recommended
it somewhere in the documentation. Most of the time clear xlate will clear
everything right up for you. However, that drops any streaming connections
such as telnet passing through the firewall when you do. Then again...so
would rebooting ;)
----- Original Message -----
From: "Munzir Khan"
To:
Sent: Thursday, August 16, 2001 1:11 AM
Subject: RE: PIX static map question [7:15983]
> Question for MAJDI & EVANS
>
> just a quick question, Is it really require to restart the pix firewall to
> take effect the new settings??
>
> another question is defining static map for INSIDE/DMZ/OUTSIDE should be
in
> sequence or it does not mater whatever sequence you make.
>
> for example
>
> static (inside,outside) 212.x.x.10 192.168.0.30 netmask 255.255.255.255.
0.0
>
> static (inside, DMZ)
> static (inside)
> static (inside,outisde)
>
> see above it is not in sequence i have the same case, I applied the
settings
> you have suggested but it is not even ping to that IP from outside ...
also
> tell me Conduit need to be also arranged by the Ip addresses ???
>
> please suggest!!!
Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=16292&t=15983
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]