-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
FRANK
Sent: Tuesday, September 11, 2001 3:32 PM
To: [EMAIL PROTECTED]
Subject: Re: PIX Default Behaviour incorrect? [7:19439]


I had a similar problem as yours. I don't know if this is the solution for
you but I took out the mtu statements and then everything was fine.

Thanks,

Frank



""Pierre-Alex""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I am using Firewall with software version 4.07 with the configuration
below:
>
> My clients can ping any address on the Internet but cannot use FTP, Telnet
> or not even a Web browser
>
> Pinging by name works fine!
>
> Am I missing something in my configs. I thought by that default the
clients
> would have access to anything
>
> on the outside, while no one could access things on the inside. Am I
wrong?
>
> Pierre-Alex
>
> PIX Version 4.0.7to PIX
> enable password 8Ry2YjIyt7RRXU24 encrypted
> syslog output 20.3
> no syslog console
> interface ethernet outside 10baset
> interface ethernet inside 10baset
> ip address inside 10.1.1.10 255.255.255.0
> ip address outside 108.145.86.53 255.255.255.0
> arp timeout 14400
> global 1 108.145.86.52-108.145.86.52
> nat 1 0.0.0.0 0.0.0.0
> age 10
> no rip outside passive
> no rip outside default
> no rip inside passive
> no rip inside default
> route outside 0.0.0.0 0.0.0.0 108.145.86.1 1
> timeout xlate 24:00:00 conn 12:00:00 udp 0:02:00
> timeout rpc 0:10:00 h323 0:05:00 uauth 0:05:00
> no snmp-server location
> no snmp-server contact
> mtu outside 1500
> mtu inside 1500
> : end
> [OK]

I know I am running PIX 6.0 but what about the "fixup protocols"
Example:
fixup protocol ftp 21
fixup protocol http 80
fixup protocol h323 1720
fixup protocol rsh 514
fixup protocol smtp 25
fixup protocol sqlnet 1521
fixup protocol sip 5060
fixup protocol skinny 2000




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=19471&t=19471
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to