Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

pls can i help me?... wiht Pix

I need help with communication between two interfaces of PIX..

pls.

4 REPLIES
Silver

Re: pls can i help me?... wiht Pix

Pls share more detail with "sanitized" config.

Silver

Re: pls can i help me?... wiht Pix

What do you need to do? Give me some specs to work with... And are the interfaces already created? Answer these questions..

which devices need to communicate with devices on the other network.

which devices are on which interfaces

etc...

New Member

Re: pls can i help me?... wiht Pix

I have this configuration

nameif ethernet4 dmz2 security10

nameif ethernet5 dmz1 security5

access-list acl_dmz2 permit ip 10.26.6.0 255.255.255.0 10.0.0.0 255.0.0.0

access-list outside_cryptomap_20 permit ip host 10.26.6.185 host 10.0.108.47

access-group acl_dmz1 in interface dmz1

route dmz2 10.0.108.47 255.255.255.255 10.0.106.1

crypto map outside_map 20 ipsec-isakmp

crypto map outside_map 20 match address outside_cryptomap_20

crypto map outside_map 20 set peer 10.0.106.1

crypto map outside_map 20 set transform-set ESP-3DES-MD5

crypto map outside_map interface dmz2

But, when the communication between dmz2 to dmz1 the connection go through other interface.

Silver

Re: pls can i help me?... wiht Pix

Can you please send the entire config? If this is all you have, there are MANY things missing...

91
Views
0
Helpful
4
Replies