Advertisement

02.16.2007 at 08:01PM PST, ID: 22395705
[x]
Attachment Details

Cisco Pix router: changed IP, DNS, and can't access internet or VPN Tunnel

Asked by quickfixbryant in Cisco PIX Firewall

Tags: , , ,

Here is the skinny:
site 1:
  has a pix router to setup VPN with site 2

site 2:
  has a pix router to setup VPN with site 1

site 2 has been assigned a new IP address, gateway, and DNS 1 and 2

This is what I did:   <text> = my comments.. not something I put into the pix.

Change IP and Gateway and DNS on site 2:

1.      enable
2.      config t
3.      ip address outside xxx.xxx.x.xx2 <my new static IP>
4.      clear route
5.      route outside 0.0.0.0 0.0.0.0 xxx.xxx.x.2xx   <isp's default gateway>
6.      ddns <can't remember exactly the command but when I looked at the config it was the right dns 1 and 2
7.      wr mem
8.      clear arp


Change Tunnel info on Site 1:

1                    no crypto map outside_map interface outside
2                    no crypto map outside_map 40 set peer xxx.xxx.x.xx1 <my old static IP>
3                   crypto map outside_map 40 set peer xxx.xxx.x.xx2 <my new static IP>
4                   isakmp key ***** address xxx.xxx.x.xx1 netmask 255.255.255.255
5                   no isakmp key ***** address xxx.xxx.x.xx1 netmask 255.255.255.255
6                   isakmp key ***** address xxx.xxx.x.xx2 netmask 255.255.255.255
7                   crypto map outside_map interface outside
8                   save config
9                    wr mem

Now I get this error that says, "no DNS" or some such whenever I'm plugged into the pix.  If I bypass the Pix, all works well.  I can't remote into the pix so I assume that the pix is not communicating to the ISP.  Did I flub?  Can you help?

-Bryant
Start Free Trial
[+][-]02.16.2007 at 08:11PM PST, ID: 18553876

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]02.17.2007 at 08:15PM PST, ID: 18557543

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]02.17.2007 at 08:51PM PST, ID: 18557620

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]02.19.2007 at 02:08PM PST, ID: 18566716

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]02.19.2007 at 05:27PM PST, ID: 18567713

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]02.20.2007 at 07:27PM PST, ID: 18576059

View this solution now by starting your 7-day free trial. Setting up your free trial is quick, easy, and secure. We will return you to this solution, unlocked, when you're done.

 

About this solution

Zone: Cisco PIX Firewall
Tags: pix, cisco, dns, router
Sign Up Now!
Solution Provided By: DarthMod
Participating Experts: 2
Solution Grade: B
 
 
 
Loading Advertisement...
20080716-EE-VQP-32