CDP is a mac-layer protocol which is multicast, so it is not possible to
permit this through the PIX firewall by ip/port. CDP only gives neighbor information. You will not see CDP flow from one side of the network across the PIX to the other. You can still poll the devices on the other-side to get their neighbor status, just not the device connected to the PIX.