Re: [fw-wiz] Noob stuck becomes PIX admin overnight!




I have a PIX 515E v6.3(3) and am running PDM v3.0(1)

The PDM can cause problems so we don't use it.

I need to allow a device (IP 192.168.100.2) on the DMZ
interface to connect to a device (IP 192.168.10.1) on the
inside interface over a range of ports (14441 - 14450).

access-list <name-of-access-list-DMZ> permit tcp host 192.168.100.2 host
192.168.10.1 range 14441 14450
access-group <name-of-access-list-DMZ> in interface
<name-of-DMZ-interface>

Replace the names between "<" and ">" with names that apply to your
configuration. You may already have an access-group statement for your
DMZ interface but that is what applies it to the interface!

I have the skills to modify my current config using the
terminal, I can remove and modify, but I don't have the
skills to create yet. Could anyone configure the lines that I
could use to allow this?


Good luck!
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: Interesting problem with pix 515 UR
    ... Consider diabling Proxy arp on inside interface. ... This pix have only 2 ethernet interfaces; i have connected the ethernet0via a cross cable ... fixup protocol dns maximum-length 512 ... ntp server 194.100.206.70 source outside ...
    (comp.dcom.sys.cisco)
  • Interesting problem with pix 515 UR
    ... This pix have only 2 ethernet interfaces; i have connected the ethernet0via a cross cable ... interface FastEthernet0/21 ... fixup protocol dns maximum-length 512 ... ntp server 194.100.206.70 source outside ...
    (comp.dcom.sys.cisco)
  • Re: One internal network, VPN, 2 PIX
    ... all I can ping is the internal interface on the PIX that I'm VPN'ing in to. ... Do I need to add ACL's into the Corp PIX to allow the VPN traffic (I already ... the 192.168.200.* inside hosts, the inside hosts are going to ... so the interior hosts send responses to the 501); ...
    (comp.dcom.sys.cisco)
  • [fw-wiz] Double firewall setup (long)
    ... One PIX 515E w/ 3 interfaces: inside, outside, DMZ. ... access-list OUTB permit tcp 10.181.8.0 255.255.248.0 any eq www ... interface ethernet0 auto ...
    (Firewall-Wizards)
  • Firewall Questions (PIX)
    ... I am new at the PIX so please excuse... ... interface which is subnet 1, ... fixup protocol h323 1720 ...
    (comp.security.firewalls)