Solved

Capabilities of a Cisco 506E?

Posted on 2006-06-11
4
279 Views
Last Modified: 2013-11-16
Dear Experts,

I would like to know if a Cisco 506E can do all of the following simultaneously (I have 4 useable public/global IP addresses to work with):

1. site-to-site VPN
2. client-to-site VPN using Cisco client
3. use one IP for a mail server that is running Exchange and OWA, i.e. static NAT allowing incoming 25 & 80 and insure that outgoing mail will use the same public IP as is the incoming (for Reverse DNS lookup issues).
4. use another, via NAT I assume, available public IP for Internet browsing by multiple users on the private side.

I currently have the site-to-site up and running, and have another PIX that is doing the NAT for mail and outgoing Internet Access, but would like to consolidate into just 1 box rather than two.

thanks in advance,

sgh_aba
0
Comment
Question by:sgh_aba
  • 2
  • 2
4 Comments
 
LVL 79

Accepted Solution

by:
lrmoore earned 125 total points
ID: 16882327
1. Yes
2. Yes
3. Yes
4. Yes

Piece of cake for all of them simultaneously. How many internal users? Only one public server (mail/owa)?
0
 
LVL 1

Author Comment

by:sgh_aba
ID: 16882383
Thanks lrmoore,

I'll be trying this tomorrow and will provide feedback ASAP if all goes well, actually regardless of how it goes.  

Yes, just one mail server with owa running on it.  Number of users at main site is 6 or 7, and at remote site that is up and running w/sitie-to-site VPN there are 2 users.

I'm beginning to believe that working at the command line, CLI, is cleaner than the PDM as when I've tried to do some things it just doesn't seem to work via the PDM.  Most likely my ignorance, but tomorrow I'm going to just use the CLI.

sgh_aba
0
 
LVL 79

Expert Comment

by:lrmoore
ID: 16882494
Good luck!
I also prefer the CLI. The PDM keeps getting better, but it is still not intuitive to do some things.
I do like the PDM VPN Wizard for both the VPN clients and the site-site VPN. Just remember to use a totally different IP subnet for your VPN clients than your local LAN, and for Pete's sake don't use 192.168.0.0/24 or 192.168.1.0/24 for anything.
0
 
LVL 1

Author Comment

by:sgh_aba
ID: 16891640
Got the 506E working today with all services working properly.  Was really straight forward even though it didn't seem that things were going to work out at first until I realized that the ARP cache on the router was giving me misleading results.  i.e. ARP had the old PIX's interface MAC address for an IP address that was now being Nat-ted on the new PIX.  Once I cleared the ARP cache all changes on the pix became apparent as they should have.

Perhaps I got a strange router here but in the future I'll always check this out as it gave very misleading results...

Thanks for your help lrmoore...

sgh_aba


0

Featured Post

Now Available: Firebox Cloud for AWS and FireboxV

Firebox Cloud brings the protection of WatchGuard’s leading Firebox UTM appliances to public cloud environments. It enables organizations to extend their security perimeter to protect business-critical assets in Amazon Web Services (AWS).

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Firewall Analyzer Reporting Software 4 59
SQL Server 2014 Setup Question 5 170
increase internet speed 3 100
Block file sharing site (Dropbox, Google Drive) for only some users 10 51
Wikipedia defines 'Script Kiddies' in this informal way: "In hacker culture, a script kiddie, occasionally script bunny, skiddie, script kitty, script-running juvenile (SRJ), or similar, is a derogatory term used to describe those who use scripts or…
To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
Although Jacob Bernoulli (1654-1705) has been credited as the creator of "Binomial Distribution Table", Gottfried Leibniz (1646-1716) did his dissertation on the subject in 1666; Leibniz you may recall is the co-inventor of "Calculus" and beat Isaac…
Finds all prime numbers in a range requested and places them in a public primes() array. I've demostrated a template size of 30 (2 * 3 * 5) but larger templates can be built such 210  (2 * 3 * 5 * 7) or 2310  (2 * 3 * 5 * 7 * 11). The larger templa…

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question