Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 
New Member

Access Lists On a PIX 515

Hi All,

A quick question about access-lists. I have a site-to-site link using two PIX 515's. I have a requirement at one end to make a PC-to-site connection to a completly different network. However the network I am trying to connect to is on the same internal address scheme as the site-to-site so the packets are not getting routed correctly. Systems are as follows :-

Site To Site link (Internal Addresses)

Far end - (

Near End - (

Site to PC Link (Internal Addresses)

My Site - (

Remote Site - (

Can any one advise the best way to mod my access-list which is shown below or advise as to another fix which will allow the traffic to flow to both sites.

access-list vpntraffic permit ip

Many Thanks In Advance



Re: Access Lists On a PIX 515

The access-list command operates on a first match basis. Therefore, the last rule added to the access list is the last rule checked. The administrator should make a note of the last rule during initial configuration, because it may impact the remainder of the rule parsing.

In this section, you are presented with the information to configure the firewall for access to a mail server located on the DMZ.

CreatePlease to create content