Quick question - SSH behind PIX

From: Scott Lowe (me_at_privacy.net)
Date: 11/20/04

  • Next message: Richard E. Silverman: "Re: Quick question - SSH behind PIX"
    Date: Sat, 20 Nov 2004 12:16:21 -0500
    
    

    I have a quick question. I need to have SSH access to a customer's
    Linux host running OpenSSH that is firewalled behind a Cisco PIX
    firewall. The PIX firewall is also SSH enabled. Normally, this would
    not be a problem, but in this particular case the customer has only a
    single IP address, and we have to use port mapping on this single IP
    address.

    When I attempt to connect to the Linux host (running on an alternate
    port), I get a warning about a host key of a different type (PIX does
    not support SSH 2). Is there a workaround, other than using different
    IP addresses for the Linux host and the outside interface of the PIX?

    TIA.

    -- 
    Scott Lowe
    

  • Next message: Richard E. Silverman: "Re: Quick question - SSH behind PIX"

    Relevant Pages

    • Re: Kindly help me with this PIX problem
      ... If you have read the configuration that I posted, ... firewall configuration didn't change over many years and it did work ... PIX, our company cannot send or receive email. ... That command allows ssh to the PIX, ...
      (comp.dcom.sys.cisco)
    • Re: Cisco PIX with SSH enabled on external port for maintenance
      ... As far as the PIX goes I would try to avoid leaving the management ... I personally favor connecting to the PIX ... If you must support SSH to the "outside" interface then you should ... >> external side of my Cisco PIX firewall. ...
      (Security-Basics)
    • Re: who does session disconnects
      ... The SSH session is secure shell - an encrypted ... How is the PIX to know when it is active or inactive? ... firewall itself for the purpose of managing the firewall. ... must support SSH connections. ...
      (comp.dcom.sys.cisco)
    • Re: Cisco PIX with SSH enabled on external port for maintenance
      ... I took the original poster as wanting to enable SSH to the PIX itself ... - PIX SSH does not support public key authentication. ... VPN fixes this by ...
      (Security-Basics)
    • Re: Firewall for laptops, corporation with 1,000 laptops
      ... I disagree completely that all you need is a PIX to protect your network, ... PIX does nothing to protect you from VPN ... alerting, which are essential to a firewall solution, are lacking.] ... the PIX firewall does nothing to protect a roaming laptop from ...
      (microsoft.public.security)