Link to home
Start Free TrialLog in
Avatar of thinnet
thinnet

asked on

pptp thorugh two Cisco pix inline

I want to set up two Cisco Pix 501 in line.  One Pix has  INT0 on the internet. INT1 is in the DMZ.  The next pix has INT0 in the DMZ and Int1 on the inside Network.  I have access from Private to DMZ and Private to Public.  I have access from the public to www/smtp in the DMZ.  What I would like to figure out is to get pptp access. I want to use the inside pix with radius back to a W2K3 server.  This is not production.  This is lab.  Never the less it has been bugging me for some time.  Watching syslog i can see that I am not getting packets to the DMZ int on the inside pix.  I am assuming that it is a translation issue.  Also I keep getting a no route from Destination to Source error from the outside pix.
ASKER CERTIFIED SOLUTION
Avatar of The--Captain
The--Captain
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of thinnet
thinnet

ASKER

I was trying to use the inside pix as the pptp server and radius to the W2K3 server for authentication
>I was trying to use the inside pix as the pptp server and radius to the W2K3 server for authentication

That's fine, but you can certainly test that it's working behind a single pix before you put it behind two, yes?  Problems like this are much easier to solve when you eliminate as many variables as possible.

Cheers,
-Jon