cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
256
Views
0
Helpful
3
Replies

PIX 515E & ISA 2004 - Ping issue

prashanth15
Level 1
Level 1

Hi,

Pls find the attached diagram.

the requirement is:

1. inside servers should ping pix inside,dmz,outside interface.

2.the server in pix dmz should be able to ping pix dmz,inside,outside interface and all servers inside.

3. from ISA i should be able to ping pix inside,dmz,outside interface and all servers inside.

Pls advice how to configure PIX using version 6.3(4) and 7.0

Regards,

Prashanth

3 Replies 3

prashanth15
Level 1
Level 1

Hi Friends,

Help me out ASAP.

cheers,

Prashanth

nkhawaja
Cisco Employee
Cisco Employee

inside server can only ping inside interface and not any other interface. But should be able to ping any host connected to any other interface.

nkhawaja
Cisco Employee
Cisco Employee

>>first you cant ping any other interface of the pix other then your directly connected.

a very basic configuration

nat (inside) 1 0 0

global (outside) 1 interface

global (dmz) 1 interface

static (inside,dmz) 172.16.0.254 172.16.0.254 netmask 255.255.240.0

access-list 100 permit icmp any any

access-group 100 in interface outside

access-group 100 in interface dmz

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card