cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
329
Views
0
Helpful
3
Replies

PIX connectivity issue

jackdangas
Level 1
Level 1

hi,

I try to configure pix firewall, without ipsec first, and i'm unable to ping from a-side to b-side:

172.20.101.x/32 <-> ping nok <-> 172.20.100.x/32.

172.20.101.x <-> ping nok <-> 10.144.32.X/21.

172.20.100.X <-> ping nok <-> 10.144.32.0/21.

Does someone have an idea ?

Jack

1 Accepted Solution

Accepted Solutions

just wondering how you go.

View solution in original post

3 Replies 3

jackko
Level 7
Level 7

with pix 6.x, nat/global or static are essential.

on both pix, add the commands below:

global (outside) 1 interface

nat (inside) 1 0 0

with the nat/global statements above, pix will pat the interface ip to pix outside interface ip.

assuming you are setting this up for test, you may want to disable nat/pat. if so, instead of adding the commands above, apply the followings:

nat (inside) 0 0 0

just wondering how you go.

Hi,

Thank you for your advice; i had to put on both routers:

Static (inside,outside)

Nat (inside)

icmp permit any inside/outisde

It's ok now,

Thanks

Jack

Review Cisco Networking products for a $25 gift card