RE: PIX Established Question

From: Scott Morris (swm@emanon.com)
Date: Sun Nov 19 2006 - 03:47:42 ART


Yeah, ok... So I should read ahead before replying. Sorry Shaun. :)

Scott

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Shaun Nicholson
Sent: Saturday, November 18, 2006 11:44 PM
To: 'Lab Rat #109385382'; cisco@groupstudy.com; ccielab@groupstudy.com;
security@groupstudy.com
Subject: RE: PIX Established Question

It depends if you had to do it in one command then look up the service
resetinbound command to fix wait time from the IDENT service which uses on
port 113

Shaun Nicholson CCIE 6705
CCNP, CCSP, INFOSEC, JNCIA-M

-----Original Message-----
From: Lab Rat #109385382 [mailto:techlist01@gmail.com]
Sent: Saturday, November 18, 2006 10:53 PM
To: cisco@groupstudy.com; ccielab@groupstudy.com; security@groupstudy.com
Subject: PIX Established Question

If I had a question that stated "users report that returning SMTP traffic
sent from inside the PIX is slow or not even communicating correctly. After
investigating, you realize that the SMTP traffic is returning on TCP port
113."

What would be the appropriate "established" command syntax?

I would say "established tcp 0 25 permitto tcp 113 permitfrom tcp 0"

Is that what you would say?

Thanks,

Ed

--
No virus found in this incoming message.
Checked by AVG Free Edition.
Version: 7.5.430 / Virus Database: 268.14.7/537 - Release Date: 11/17/2006
5:56 PM
 

-- No virus found in this outgoing message. Checked by AVG Free Edition. Version: 7.5.430 / Virus Database: 268.14.7/537 - Release Date: 11/17/2006 5:56 PM



This archive was generated by hypermail 2.1.4 : Fri Dec 01 2006 - 08:05:47 ART