RE: OT:Connectivity to pix 515E

From: Kevin Minihane (kevin.minihane@eirteic.com)
Date: Mon Dec 20 2004 - 11:12:21 GMT-3


Sorry,

I should have posted my configuration in my original mail

Thanks once again

Kevin

PIX Version 6.3(3)

interface ethernet0 auto

interface ethernet1 auto

nameif ethernet0 outside security0

nameif ethernet1 inside security100

enable password SV1vwQoGOZ8rZtFQ encrypted

passwd 2KFQnbNIdI.2KYOU encrypted

hostname test-pix

domain-name test.domain

fixup protocol dns maximum-length 512

fixup protocol ftp 21

fixup protocol h323 h225 1720

fixup protocol h323 ras 1718-1719

fixup protocol http 80

fixup protocol rsh 514

fixup protocol rtsp 554

fixup protocol sip 5060

fixup protocol sip udp 5060

fixup protocol skinny 2000

fixup protocol smtp 25

fixup protocol sqlnet 1521

fixup protocol tftp 69

names

access-list 101 permit ip any any

pager lines 24

icmp permit host 192.168.5.2 outside

icmp permit 192.168.1.0 255.255.255.0 inside

mtu outside 1500

mtu inside 1500

ip address outside 192.168.x.x 255.255.255.0

ip address inside 192.168.1.1 255.255.255.0

ip audit info action alarm

ip audit attack action alarm

no failover

failover timeout 0:00:00

failover poll 15

no failover ip address outside

no failover ip address inside

pdm history enable

arp timeout 14400

access-group 101 in interface outside

access-group 101 in interface inside

conduit permit icmp any any

route outside 0.0.0.0 0.0.0.0 192.168.x.x 1

timeout xlate 3:00:00

timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225
1:00:00

timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00

timeout uauth 0:05:00 absolute

aaa-server TACACS+ protocol tacacs+

aaa-server RADIUS protocol radius

aaa-server LOCAL protocol local

http server enable

http 192.168.1.4 255.255.255.255 inside

no snmp-server location

no snmp-server contact

snmp-server community public

no snmp-server enable traps

floodguard enable

telnet timeout 5

ssh timeout 5

console timeout 0

dhcpd address 192.168.1.4-192.168.1.20 inside

dhcpd dns 192.168.x.x

dhcpd lease 3600

dhcpd ping_timeout 750

dhcpd enable inside

terminal width 80

Cryptochecksum:7f8495ed53b6119ec5d5ab30b9b4ce60

: end

-----Original Message-----
From: majid habib [mailto:majidkk@yahoo.com]
Sent: 20 December 2004 13:52
To: Kevin Minihane
Subject: Re: OT:Connectivity to pix 515E

use https intead of http for pdm access

--- Kevin Minihane <kevin.minihane@eirteic.com> wrote:

> Hi
>
>
>
> I'm having a few problems connecting to a PIX 515E.
> I want to use PDM as
> I'm not very confidant with PIX technology.
>
> Every Cisco site/document I've read tells me I can
> connect to the inside
> interface (which by default has an IP address of
> 192.168.1.1/24) as long as
> I connect it to a hub/switch, and give my PC an
> address in the same subnet./
> I've done this, but am still unable to connect to
> http://192.168.1.1/startup.html as the documents say
>
>
>
> Does anyone have any idea on what may be wrong?
> This is a brand new pix ,
> out of the box, with a default installation.
>
>
>
> I'd greatly appreciate any help
>
>
>
> Thanks
>
>
>
> Kevin
>
>



This archive was generated by hypermail 2.1.4 : Mon Jan 03 2005 - 10:31:28 GMT-3