Re: PIX 501 routing issues
- From: Chris <mandrake440@xxxxxxxxxxx>
- Date: Fri, 29 Jun 2007 18:16:31 +0100
On Fri, 29 Jun 2007 06:54:17 -0700, Justin wrote:
On Jun 28, 5:46 pm, Chris <mandrake...@xxxxxxxxxxx> wrote:
Internal devices (configured with the PIX as the gateway) can ping the
inside interface of the PIX but not the outside.
With a Pix you can only ping the closet IP address. You shouldn't be able
to ping the outside address from the inside. This is quite normal.
Chris.
Unfortunaltely, using ping and traceroute were just a tools to test
routing in an attempt to see why internet traffic could not make it
outside the PIX. I have tried resetting the box back to factory
defaults and using the 192.168.1.x ip address scheme and connecting
the outside interface directly to an internet router, setting up the
default NAT and allowing all traffic on both sides and it still will
not let a computer from the inside look outwards.
Tis probably time for a call to Cisco.
Your config looked okay. I presume that you checked the routing on the
client PC's? What did a "sh xlate" show on the pix? Could the clients
resolve URL's to IP's?
Chris.
.
- References:
- PIX 501 routing issues
- From: Justin
- Re: PIX 501 routing issues
- From: Chris
- Re: PIX 501 routing issues
- From: Justin
- PIX 501 routing issues
- Prev by Date: Re: SYSLOG Question
- Next by Date: Should I use a private VLAN
- Previous by thread: Re: PIX 501 routing issues
- Next by thread: Re: PIX 501 routing issues
- Index(es):
Relevant Pages
|