On Fri, 29 Mar 2002, Claussen, Ken wrote:
:According to Cisco Documentation:
:  "PIX Firewall does not pass multicast packets. Many routing protocols
:use multicast packets to transmit their data. If you need to send
:routing protocols across the PIX Firewall, configure the routers with
:the Cisco IOS software neighbor command. We consider it inherently
:dangerous to send routing protocols across the PIX Firewall. If the
:routes on the unprotected interface are corrupted, the routes
:transmitted to the protected side of the firewall will pollute routers
:there as well.

I've been told the reason PIX does not decrement IP TTL is to support OSPF
through a PIX gateway.

_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to