Solved

After upgrade, can not access PDM on Pix Firewall 515

Posted on 2008-06-25
2
887 Views
Last Modified: 2009-12-16
I recently did a password recovery, upgrade 6.0 to 6.2, and PDM upgrade to 3.0.  I have the pix inside interface connected to my network and can ping the assigned ip address. What I can't do is open the PDM interface.  I get a page cannot be displayed on IE 7.  I have java installed.  

I would like to know if this is a product conflict issue or a config issue.

Here is the "sho ver" results

pixfirewall(config)# sho ver

Cisco PIX Firewall Version 6.2(4)
Cisco PIX Device Manager Version 3.0(4)

Compiled on Mon 28-Jun-04 15:05 by morlee

pixfirewall up 35 mins 44 secs


Here is the running config

pixfirewall(config)# sho conf
: Saved
: Written by enable_15 at 19:14:30.247 UTC Wed Jun 25 2008
PIX Version 6.2(4)
nameif ethernet0 outside security0
nameif ethernet1 inside security100
enable password usXfjPAOdbec9h7C encrypted
passwd 2KFQnbNIdI.2KYOU encrypted
hostname pixfirewall
domain-name urbannetlife.com
fixup protocol ftp 21
fixup protocol http 80
fixup protocol h323 h225 1720
fixup protocol h323 ras 1718-1719
fixup protocol ils 389
fixup protocol rsh 514
fixup protocol rtsp 554
fixup protocol smtp 25
fixup protocol sqlnet 1521
fixup protocol sip 5060
fixup protocol skinny 2000
fixup protocol sip udp 5060
names
pager lines 24
interface ethernet0 auto shutdown
interface ethernet1 auto
mtu outside 1500
mtu inside 1500
ip address outside 127.0.0.1 255.255.255.255
ip address inside 192.168.15.200 255.255.255.0
ip audit info action alarm
ip audit attack action alarm
pdm history enable
arp timeout 14400
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00 sip 0:30:00 sip_media 0:02:00
timeout uauth 0:05:00 absolute
aaa-server TACACS+ protocol tacacs+
aaa-server RADIUS protocol radius
aaa-server LOCAL protocol local
http server enable
http 192.168.15.3 255.255.255.255 inside
no snmp-server location
no snmp-server contact
snmp-server community public
no snmp-server enable traps
floodguard enable
no sysopt route dnat
telnet timeout 5
ssh timeout 5
terminal width 80
Cryptochecksum:239fd407d97af31045dde72b5b558400
pixfirewall(config)#
0
Comment
Question by:Aluwishus
2 Comments
 
LVL 28

Expert Comment

by:jhyiesla
ID: 21870855
You might check with Cisco...some versions of the Cisco OS, perhaps all, have some difficulties with certain versions of Java.  We have a PIX 525 and the original version of the OS would not work with current versions of Java.  I had to keep an machine around with an older version of Java in order to get the PDM to work.
0
 

Accepted Solution

by:
Aluwishus earned 0 total points
ID: 21871189
After some more research I found out that IE7 doesnt work with it.

Firefox (I have 3 now), I had to enter 'about:config' in the address bar and put 'security.ssl3.rsa_rc4_40_md5' in the filter. Then I double clicked on the item.  Entering the https://ip_address again another security error popped up. At the bottom it gave me the option to 'add exemption' which i went and followed the prompts and POW! PDM
0

Featured Post

What Security Threats Are You Missing?

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

Join & Write a Comment

Suggested Solutions

I have seen some questions on problems with SSH/telnet access to Cisco routers that may occur despite the fact that from a PC connected to your LAN, Internet connectivity is in place and users can access Internet sites without any issues.  There are…
Creating an OSPF network that automatically (dynamically) reroutes network traffic over other connections to prevent network downtime.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

706 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now