Re: RDP to Win2003 server thru PIX
- From: "W Abucewicz" <wabucewicz@xxxxxxxxx>
- Date: 31 Aug 2006 06:37:55 -0700
You are correct... we have additional public addresses that are not in
use
Can you point me in a direction ...?
How to assign the inside IP to a differnt public IP..?
Then the rules that you originally sent should work...
--Walter
Walter Roberson wrote:
In article <1156934316.459607.213920@xxxxxxxxxxxxxxxxxxxxxxxxxxxx>,
W Abucewicz <wabucewicz@xxxxxxxxx> wrote:
As you can tell, I have little Cisco experience..
Looks like an upgrade is needed... is that a firmware upgrade or
something more involved?
It would not be a firmware upgrade, but if the device is sufficiently
old then it might require two stages. Based upon the configuration
(or, more correctly, what the configuration does NOT contain), and
based upon my knowledge of which devices existed at which stage of PIX OS,
I would hypothesize that the device is a PIX 506 (but not 506E).
Is that correct?
Upgrading a PIX 506 is relatively easy, but there would be a non-trivial
cost to upgrading one that old. Cisco's price lists are a maze
full of red herrings, so the best I can estimate is $US 1000 to get the
software upgrade. It might not be worth it from an investment point of
view, as the PIX 506 now seems to be quite unlikely to be supported in
PIX 7.x.
Your outside IP address has a netmask of 255.255.255.248 indicating
that the ISP has assigned a range of 8 IPs to the connection.
Two of those are reserved (by the IP protocols), one would be allocated
to your end of the connection, one would be allocated to their end of
the connection -- and that leaves 4 unaccounted for.
You may thus *already* have additional public IPs that you can use. If
so then you do not need any software upgrade: the restrictions I discussed
before had to do with using the PIX outside interface IP -itself-
as the target of incoming connections; using a different IP in the
same subnet is fair game, if you have the IP.
.
- References:
- RDP to Win2003 server thru PIX
- From: W Abucewicz
- Re: RDP to Win2003 server thru PIX
- From: W Abucewicz
- Re: RDP to Win2003 server thru PIX
- From: Walter Roberson
- Re: RDP to Win2003 server thru PIX
- From: W Abucewicz
- Re: RDP to Win2003 server thru PIX
- From: Walter Roberson
- RDP to Win2003 server thru PIX
- Prev by Date: Re: Load-balancing across four T1's on 2 routers
- Next by Date: Re: NAT Question ....
- Previous by thread: Re: RDP to Win2003 server thru PIX
- Next by thread: PIX 506E PDM 3.0(1) PIX 6.3(3) NAT/PAT (Part 4)
- Index(es):
Relevant Pages
|