Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

PIX 7.0 - Unaccessible websites

Hi,

Could any of you, supposed you are behind a PIX 7.0 firewall, try to access this website : http://193.24.213.215:8000

When I'm behind the PIX 7.0, I get a "Error 502 - Server unexpectedly closed connection. " but if I'm directly connected to the company network, I can easily access this website without any problem...

Thanks for your help,

12 REPLIES
Community Member

Re: PIX 7.0 - Unaccessible websites

Are you allowing all TCP traffic out? Your url is going out port 8000. Not the normal port 80 for web traffic.

Community Member

Re: PIX 7.0 - Unaccessible websites

Pix 7 can also interfere with certain Java, there are some other posts on this forum about that....

Community Member

Re: PIX 7.0 - Unaccessible websites

There's no java on this webpage... Connecting to this server on other web applications on other ports pops the same problem up.

I think there may be something to change in TCP inspection even if I did not activate HTTP inspection :\

Community Member

Re: PIX 7.0 - Unaccessible websites

I am using pix 7.0 and can get to the website no problem.

Community Member

Re: PIX 7.0 - Unaccessible websites

Maybe could I have a look at your configuration ?

Community Member

Re: PIX 7.0 - Unaccessible websites

Yes of course all traffic out is allowed. Access-lists are all right :)

Gold

Re: PIX 7.0 - Unaccessible websites

just wondering which version is the pix running. if not running v7.0.4, then it's worth to upgrade to it.

i had couple issues with v7.0.2, which doesn't allow pinging the internet or browsing. the issue was resolved with v7.0.4.

Community Member

Re: PIX 7.0 - Unaccessible websites

I'm running v7.0(4)

Gold

Re: PIX 7.0 - Unaccessible websites

odd.

http://193.24.213.215:8000 opens when my notebook is connected to pix501 v.6.3

http://193.24.213.215:8000 doesn't open when my notebook is connected to asa v7.0.4.

i was thinking that port 8000 needs to be added as the http inspection. but then the odd thing is:

http://193.24.213.215:8000 opens when my notebook is connected to pix515e v7.0.4.

both pix515e and asa run the same os, as well as the default inspection rules on http.

Community Member

Re: PIX 7.0 - Unaccessible websites

Oh là là... I'll have a look at the http inspection but right now, I'm a bit confused about all this stuff :\

Community Member

Re: PIX 7.0 - Unaccessible websites

Can you check this link

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a00804c8b9f.shtml

Might be you are bumping in to this issue.

Community Member

Re: PIX 7.0 - Unaccessible websites

I already know this link. I trie out to create a mss-exceeded tcp-map but this does not work.

I don't really know where it can come from :\

174
Views
0
Helpful
12
Replies
CreatePlease to create content