sorry to hear about your engineer. You need to make sure you have a static
nat or nat zero statement for your inside ip and an access list entry on
your dmz acl to permit this traffic. If you need a consultant in the
interim let me know and maybe we can work something out.

From:"Chris Bonthron" <cbonthron@xxxxxxxxxxxxx>
Sent:Thu 6/22/06 5:06 pm
Subj:[fw-wiz] Noob stuck becomes PIX admin overnight!

My regular PIX specialist up and disappeared on me last week and I'm
currently looking for someone new, in the mean time I urgently need to
alter my config and I'm completely lost. I can do things like add
duplicates of rules and translations based on what is there already but
this is a new one for me and I don't want to mess it up. I'm hoping
someone here can help me... please.

I have a PIX 515E v6.3(3) and am running PDM v3.0(1)

I need to allow a device (IP on the DMZ interface to
connect to a device (IP on the inside interface over a range
of ports (14441 - 14450).

I have the skills to modify my current config using the terminal, I can
remove and modify, but I don't have the skills to create yet. Could anyone
configure the lines that I could use to allow this?



