On Fri, 29 Mar 2002, Claussen, Ken wrote: :According to Cisco Documentation: : "PIX Firewall does not pass multicast packets. Many routing protocols :use multicast packets to transmit their data. If you need to send :routing protocols across the PIX Firewall, configure the routers with :the Cisco IOS software neighbor command. We consider it inherently :dangerous to send routing protocols across the PIX Firewall. If the :routes on the unprotected interface are corrupted, the routes :transmitted to the protected side of the firewall will pollute routers :there as well.
I've been told the reason PIX does not decrement IP TTL is to support OSPF through a PIX gateway. _______________________________________________ Firewalls mailing list [EMAIL PROTECTED] http://lists.gnac.net/mailman/listinfo/firewalls
