Re: [fw-wiz] Disecting the Cisco PIX

From: Evan Wagner (ewagner@Radix.Net)
Date: 07/30/02


From: Evan Wagner <ewagner@Radix.Net>
To: Art Mason <a.c.mason@sbcglobal.net>
Date: Tue Jul 30 15:34:02 2002

Yes,

A PIX 520 consists of an Intel Seattle II motherboard, power supply, floppy
drive, proprietary Cisco ISA flash card and 2 or more Intel Pro 100 PCI
NICs. That's all the components needed to create a 'FrankenPIX'. There was
a thread on Usenet about this a while back...

http://groups.google.com/groups?hl=en&lr=&ie=UTF-8&oe=UTF-8&threadm=a7vc0q%248kb%241%40sunsite.icm.edu.pl&rnum=1&prev=/groups%3Fhl%3Den%26lr%3D%26ie%3DUTF-8%26oe%3DUTF-8%26q%3Dfrankenpix%26btnG%3DGoogle%2BSearch

PIX classics may have used 10MB NICs but not the 520's that I am aware of.

--Evan

On 30 Jul 2002, Art Mason wrote:

> Out of curiosity, has anyone here ever cracked open any of the Cisco PIX
> series firewalls chassis? From what I've gathered by reading up on
> their product information and by what people have said about them in
> various mailing lists and newsgroups, they are actually built on an x86
> hardware platform w/ a Celeron 300MHz (PIX 506E) to Pentium III 1.0GHz
> (PIX 535) CPU and anywhere from 32MB to 1GB RAM . I understand the
> storage media to be compact flash (4-16MB capacity) and on the low-end
> models w/ 10Mb throughput, they actually use an ISA NIC in the chassis.
> I've also read that the PIX doesn't support local logging (everything
> needs to be redirected to a syslog server). Can anyone confirm any of
> this? If so, why couldn't one just throw OpenBSD onto some flash media,
> drop a couple of Intel Pro100+ dual-port NICs in a 2U rackmount case,
> maybe offload some of the VPN stuff onto an ASIC-based encryption
> acceleration card, and save some big bucks, granted they know how to set
> up PF from the CLI? This is just something I've been wondering about
> for a while, and was curious as to what others in the know had to say
> about it. Thanks in advance.
>
> Art Mason
>
>
>
> _______________________________________________
> firewall-wizards mailing list
> firewall-wizards@honor.icsalabs.com
> http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
>



Relevant Pages

  • Re: Navy Retirement
    ... pix for the room lights is to have pix that are partially ... the color cast of the room lights. ... Spare batteries for both the camera and flash. ...
    (rec.photo.digital.slr-systems)
  • Re: PIX FireWall and SBS
    ... I would advise using the dual nic setup with SBS2k3 and the PIX. ... network configurations for two nics and a router which will show the IP ... and the workstations would use the server internal nic as a gateway. ... If Earthlink do not use PPoE the configuration above won't be usable. ...
    (microsoft.public.windows.server.sbs)
  • Re: Two Nics really needed?
    ... Seems like the T1 router and the PIX can remain unchanged. ... your external NIC on the SBS in the same subnet as the LAN side of the PIX. ... Then the SBS server internal NIC and the workstation NICs plug into the ...
    (microsoft.public.backoffice.smallbiz2000)
  • PIX dual homed for internal routing
    ... I will be using the PIX to provide VPN access and VPN access only. ... I have a single address space /28 that makes up my logical DMZ. ... Is there any way around this, shy another router between the ... I have 3 NICs on the PIX, ...
    (comp.dcom.sys.cisco)
  • Re: 4th nic for pix 525
    ... :I'm thinking of installing another NIC on our Cisco PIX 525. ... :another one for a second DMZ. ... There are no 3rd party NICs supported on the PIX. ...
    (comp.dcom.sys.cisco)