cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
469
Views
0
Helpful
2
Replies

PIX Conversion

harvey.dewan
Level 1
Level 1

I am in the middle of changing from a 520 to a 515. I have moved everything except the VPN tunnels. I an getting the following error, when I enter the "no sysopt route dnat" command.

"The sysopt route dnat option has been deprecated"

Any thoughs.

The 520 was runnign 6.1

Teh 515 is running 6.3

2 Replies 2

lwierenga
Level 1
Level 1

route dnat appears to be removed from sysopt in v6.3

6.3 command reference for sysopt:

[no] sysopt connection permit-pptp | permit-l2tp | permit-ipsec

[no] sysopt connection tcpmss bytes

[no] sysopt connection timewait

[no] sysopt ipsec pl-compatible

[no] sysopt nodnsalias inbound | outbound

[no] sysopt noproxyarp if_name

[no] sysopt radius ignore-secret

[no] sysopt uauth allow-http-cache

clear sysopt

show sysopt

Since PIX OS 6.2, the overlapping configurations of network addresses and routes are automatically handled by outside NAT. The sysopt route dnat command is ignored and deprecated. Therefore you should not worry about it.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card