PIX 506e vpn config

Posted on 2004-11-17
Last Modified: 2013-11-16

I have a home based pix 506e connected over adsl. I've currently got a basic pix setup comprising of dhcp & nat/pat for inside hosts, and access lists restricting all but outside dns & web traffic.

I am looking to setup a VPN tunnel to an outside host. I want to use ipsec & des with possibly the pix providing authentication (I have no tacacs or radius server). Also I am trying to setup the client without the cisco vpn client.
I have read up on cisco vpns but as its such a large topic with various configurations, I am getting a bit lost. Any help would be appreciated.

Kind regards,
Question by:hotdiggetydawg
    LVL 36

    Expert Comment

    Hi hotdiggetydawg,
    I am confused to what you want.
    Do you want an outside client to connect via VPN to your network via the PIX?
    Or do you want to create a LAN-LAN VPN between your PIX and another Firewall?
    Or do you want to run the windows built in client on your machine and connect to a Windows VPN server?

    Author Comment

    Sorry, it'll be a windows outside client to connect via VPN to your network via the PIX.
    LVL 36

    Accepted Solution

    If you want to use the windows built in client you will need to use PPTP.

    In order to use IPSEC you will need to use the Cisco client.

    This is a good configuration example:-
    The lines beninning with 'isakmp', 'crypto' and 'sysopt connection permit-ipsec' are for IPSEC while the other lines in bold are for PPTP.
    With PPTP you create lots of local username/password pairs. For IPSEC you can have a single local group (as in the example) but also enable local authentication which is not detailed in this example.

    Featured Post

    Gigs: Get Your Project Delivered by an Expert

    Select from freelancers specializing in everything from database administration to programming, who have proven themselves as experts in their field. Hire the best, collaborate easily, pay securely and get projects done right.

    Join & Write a Comment

    Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
    Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
    Hi everyone! This is Experts Exchange customer support.  This quick video will show you how to change your primary email address.  If you have any questions, then please Write a Comment below!
    In this sixth video of the Xpdf series, we discuss and demonstrate the PDFtoPNG utility, which converts a multi-page PDF file to separate color, grayscale, or monochrome PNG files, creating one PNG file for each page in the PDF. It does this via a c…

    754 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    18 Experts available now in Live!

    Get 1:1 Help Now