Advertisement
|
[x]
Posted via EE Mobile
|
||
Search, ask, and monitor your questions on the go with EE Mobile. Visit Experts Exchange from your mobile device and never be out of touch again. |
||
| 01/12/2008 at 10:09AM PST, ID: 23078159 |
|
[x]
Attachment Details
|
||
|
[x]
The Solution Rating System
|
||
With so many solutions, how can you tell which solutions are most likely to help you and which ones are not? To provide you with a tool to use, we rate our solutions based on various elements that most accurately determine if a solution is a quality solution. To explain what factors affect the solution rating, here are the elements we take into consideration when formulating our solution rating.
Your Input Matters If you have any suggestions that you would like to make for our rating system, please ask a question in the Suggestions Zone of Community Support. Thank you! |
||
1: 2: 3: 4: 5: 6: 7: 8: 9: 10: 11: 12: 13: 14: 15: 16: 17: 18: 19: 20: 21: 22: 23: 24: 25: 26: 27: 28: 29: 30: 31: 32: 33: 34: 35: 36: 37: 38: 39: 40: 41: 42: 43: 44: 45: 46: 47: 48: 49: 50: 51: 52: 53: 54: 55: 56: 57: 58: 59: 60: 61: 62: 63: 64: 65: 66: 67: 68: 69: 70: 71: 72: 73: 74: 75: 76: 77: 78: 79: 80: 81: 82: 83: 84: 85: 86: 87: 88: 89: 90: 91: 92: 93: 94: 95: 96: 97: 98: 99: 100: 101: 102: 103: 104: 105: 106: 107: 108: 109: 110: 111: 112: 113: 114: 115: 116: 117: 118: 119: 120: 121: 122: 123: 124: 125: 126: 127: 128: 129: 130: 131: 132: 133: 134: 135: 136: 137: 138: 139: 140: 141: 142: 143: 144: 145: 146: 147: 148: 149: 150: 151: 152: 153: 154: 155: 156: 157: 158: 159: 160: 161: 162: 163: 164: 165: 166: 167: 168: 169: 170: 171: 172: 173: 174: 175: 176: 177: |
MeccaNetPix# show running-config : Saved : PIX Version 8.0(2) ! hostname MeccaNetPix domain-name meccamedia.com enable password 2KFQnbNIdI.2KYOU encrypted names dns-guard ! interface Ethernet0 nameif outside security-level 0 ip address 24.73.166.50 255.255.255.252 ! interface Ethernet1 nameif inside security-level 100 ip address 192.168.0.1 255.255.255.0 ! interface Ethernet2 shutdown nameif dmz security-level 10 ip address 192.168.1.1 255.255.255.0 ! passwd YHP/GpHoiUQdMATS encrypted banner login Hello Meccanet Admin! ftp mode passive clock timezone EST -5 clock summer-time EDT recurring dns server-group DefaultDNS domain-name meccamedia.com object-group service SIP tcp-udp description IAX, SIP and RTP ports port-object eq 4569 port-object range sip 5082 port-object range 10001 20000 object-group service webservices tcp description MeccaNet Webservices port-object eq www port-object eq ftp port-object eq pop3 port-object eq smtp port-object eq 81 port-object eq 82 access-list 101 extended permit ip 192.168.0.0 255.255.255.0 192.168.2.0 255.255.255.0 access-list 102 extended permit ip 192.168.0.0 255.255.255.0 192.168.2.0 255.255.255.0 access-list outside_access_in extended permit tcp any host 24.73.166.50 object-group SIP access-list outside_access_in extended permit udp any host 24.73.166.50 object-group SIP access-list outside_access_in extended permit tcp any interface outside object-group webservices access-list split extended permit ip 192.168.0.0 255.255.255.0 192.168.2.0 255.255.255.0 access-list mecca_icmp_traffic remark Rules for ICMP Traffic access-list mecca_icmp_traffic extended permit icmp any any unreachable access-list mecca_icmp_traffic extended permit icmp any any time-exceeded access-list mecca_icmp_traffic extended permit icmp any any echo-reply access-list webservices extended permit tcp any host 24.73.166.50 object-group webservices no pager logging enable logging timestamp logging trap informational logging history warnings logging asdm informational logging host inside 192.168.0.3 mtu outside 1500 mtu inside 1500 mtu dmz 1500 ip local pool ippool 192.168.2.1-192.168.2.254 ip verify reverse-path interface outside no failover icmp unreachable rate-limit 1 burst-size 1 asdm history enable arp timeout 14400 nat-control global (outside) 1 interface nat (inside) 0 access-list 101 nat (inside) 1 0.0.0.0 0.0.0.0 static (inside,outside) tcp interface smtp 192.168.0.3 smtp netmask 255.255.255.255 static (inside,outside) tcp interface pop3 192.168.0.3 pop3 netmask 255.255.255.255 static (inside,outside) tcp interface ftp 192.168.0.4 ftp netmask 255.255.255.255 static (inside,outside) tcp interface www 192.168.0.6 www netmask 255.255.255.255 static (inside,outside) tcp interface 81 192.168.0.3 81 netmask 255.255.255.255 static (inside,outside) tcp interface sip 192.168.0.5 sip netmask 255.255.255.255 static (inside,outside) udp interface sip 192.168.0.5 sip netmask 255.255.255.255 access-group outside_access_in in interface outside route outside 0.0.0.0 0.0.0.0 24.73.166.49 1 timeout xlate 3:00:00 timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02 timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00 timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00 timeout uauth 0:05:00 absolute dynamic-access-policy-record DfltAccessPolicy aaa-server TACACS+ protocol tacacs+ aaa-server RADIUS protocol radius http server enable http 192.168.0.0 255.255.255.255 inside http 0.0.0.0 0.0.0.0 inside snmp-server location Dunedin, Florida snmp-server contact Ross Mccullough snmp-server community !Phoenixzz9320 snmp-server enable traps snmp authentication linkup linkdown coldstart snmp-server enable traps syslog crypto ipsec transform-set myset esp-des esp-md5-hmac crypto dynamic-map dynmap 10 set transform-set myset crypto map mymap 10 ipsec-isakmp dynamic dynmap crypto map mymap interface outside crypto isakmp identity address crypto isakmp enable outside crypto isakmp policy 10 authentication pre-share encryption des hash md5 group 2 lifetime 86400 crypto isakmp policy 65535 authentication pre-share encryption des hash sha group 2 lifetime 86400 no crypto isakmp nat-traversal telnet 192.168.0.0 255.255.255.0 inside telnet timeout 5 ssh timeout 5 ssh version 1 console timeout 0 threat-detection basic-threat threat-detection statistics ! class-map inspection_default match default-inspection-traffic ! ! policy-map type inspect dns preset_dns_map parameters message-length maximum 512 policy-map type inspect dns migrated_dns_map_1 parameters message-length maximum 512 policy-map global_policy class inspection_default inspect dns migrated_dns_map_1 inspect h323 h225 inspect h323 ras inspect http inspect ils inspect netbios inspect rsh inspect rtsp inspect skinny inspect sqlnet inspect sunrpc inspect tftp inspect sip inspect xdmcp ! service-policy global_policy global group-policy meccanet internal group-policy meccanet attributes banner value Welcome MeccaNet User wins-server value 192.168.0.4 dns-server value 192.168.0.2 vpn-tunnel-protocol IPSec split-tunnel-policy tunnelspecified split-tunnel-network-list value split default-domain value meccamedia.com tunnel-group meccanet type remote-access tunnel-group meccanet general-attributes address-pool ippool default-group-policy meccanet tunnel-group meccanet ipsec-attributes pre-shared-key * prompt hostname context Cryptochecksum:830a1021e78c73108fddba9d162d2cab : end MeccaNetPix# |