When I connect to my PIX 501 (6.3(4)) from outside I authenticate and can ping the internal machines OK. But I can't map any shares on those machines.
When I try to map a drive, I see the following in the PIX log:
No translation group found for tcp src outside:192.168.200.2/1075 dst inside:192.168.0.250/139
I'm surprised to see the 192.168.200.2 address. That is the private internal address of the outside machine on it's remote LAN. I would thought I would see the ip address assigned to it from the PIX VPN pool which I have verified to be 192.168.4.1.
My current config:
access-list inside_outbound_nat0_acl permit ip 192.168.0.0 255.255.255.0 192.168.4.0 255.255.255.0
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...