PIX 501 firewall

Posted on 2006-05-16
Medium Priority
Last Modified: 2013-11-16
I have Network elements I need to access remotely.  I am trying to configure PIX 501 to do this for me.  I have a range of  5 public IP addresses.  I also plan to use a private IP inside.  Any suggestions ??
Question by:Miravet
  • 2

Accepted Solution

centrepc earned 2000 total points
ID: 16694472
You will need the proper commands to forward ports on the pix from your public ips to your private

access-group <name> in interface outside
access-list <name> permit tcp any host xx.xx.xx.xx eq xxxx
hostname(config)# static (inside,outside) tcp xx.xx.xx.xx xxxx netmask

you will need the above commands for each port you want to forward
xxxx=port number
xx.xx.xx.xx=ip address

Comment from rsivanandan
Date: 05/02/2006 07:43PM PDT

Along with the config above by centrepc, you also need an access-list to forward these traffic or else PIX will block 'em.

access-list <name> permit tcp any host 78.x.104.26 eq 5631
access-list <name> permit tcp any host 78.x.104.26 eq 5632

access-group <name> in interface outside


Expert Comment

ID: 16695000
This was from a similar post that rsivanandan and I answered earlier for someone who wanted to forward pcanywhere ports

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

If you’re involved with your company’s wide area network (WAN), you’ve probably heard about SD-WANs. They’re the “boy wonder” of networking, ostensibly allowing companies to replace expensive MPLS lines with low-cost Internet access. But, are they …
This article explains the fundamentals of industrial networking which ultimately is the backbone network which is providing communications for process devices like robots and other not so interesting stuff.
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …

609 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question