Re: [fw-wiz] PIX error



Posting your config would help.

Just guessing, I would say that your access lists are wrong.

Brian Loe wrote:

This is a fairly common error, but I haven't found anything that
addresses what I'm seeing on two IPs (out of the 6 that were
configured the same):

<171>Mar 21 2006 11:20:40: %PIX-3-305005: No translation group found for
icmp src dmz1:10.x.x.51 dst outside:pub.ip.ad.182 (type 0, code 0)
in 21-Mar 12:43:50.12 from 10.117.193.10

The private IP address has a static nat from dmz2 (NOT dmz1) to
outside. And again, this IP and another both get this error when you
try to ping them - but the other 4 have no issues whatsoever.
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxx
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards




_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxx
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: Help hardening router
    ... router and they dont use a FW. ... Im pasting here the config can someone ... recommend to use reflexive access lists ... reflexive access lists, I'd suggest some serious cleaning up to be ...
    (Security-Basics)
  • Re: Multiple SSL on the same IIS
    ... > I configured 2 Virtual servers with different IPs but when I tried to ... > configured the IPs on the SSL portion of the dialog box (the one that ... Have you added the ip addresses to the machine's IP config? ... local area connection in 'network connections' and select properties. ...
    (microsoft.public.inetserver.iis.security)
  • Re: Setting up VPN on a Cisco 1712
    ... > a config script? ... you should tailor your access lists and filter ... I haven't managed to use their GUI ... tool that comes for the 877 router, but from what I've seen it only allows ...
    (comp.dcom.sys.cisco)