Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 376
  • Last Modified:

VPN connecting with MACs to Pix firewall, cant ping or browse

I have been able to get the Cisco VPN client for MAC to connect to the router (I believe it connects successfully, no error after connecting) but I cannot browse the network at all after that, can't ping, can't see shares, can't do anything after connecting. Tried all the SMB,AFP tricks I could find to connect to a windows server (inside the building MACs connect to everything just fine, with or without using AppleTalk)...That's where I am at a loss...

 

Do ports need to be opened on the router? do protocols need to be allowed? Do I need an additional server set up to authenticate the MACs instead?
0
ADX39655
Asked:
ADX39655
  • 4
  • 2
1 Solution
 
lrmooreCommented:
Make sure nat-t is enabled on the pix

isakmp nat-traversal 20

0
 
ADX39655Author Commented:
I checked and it is shown in the config. Looks like it is enabed.
isakmp enable outside
isakmp identity address
isakmp nat-traversal 20
isakmp policy 10 authentication pre-share
isakmp policy 10 encryption des
isakmp policy 10 hash md5
isakmp policy 10 group 2
isakmp policy 10 lifetime 86400

Any other ideas?

Thanks
tpressPix-E.txt
0
 
lrmooreCommented:
>PIX Version 6.3(3)
Very, very buggy version. Suggest update to 6.3(5)

you are only using DES/MD5. Can you use 3DES? Do you have a license?
Everything else looks OK. Is it only Mac's that have a problem? Are Windows clients working OK?
0
Configuration Guide and Best Practices

Read the guide to learn how to orchestrate Data ONTAP, create application-consistent backups and enable fast recovery from NetApp storage snapshots. Version 9.5 also contains performance and scalability enhancements to meet the needs of the largest enterprise environments.

 
ADX39655Author Commented:
Windows clients working fine. Only macs have a problem. It shows as connected yet still cant ping anything. I dont see a probelm with going 3DES. I guess I could update, id have to get my hands on it. No Cisco login right now.
0
 
ADX39655Author Commented:
Thanks for the help.
0
 
ADX39655Author Commented:
Thanks, I now have a connections but i have a new issue. I will submitt another question.
0

Featured Post

Evaluating UTMs? Here's what you need to know!

Evaluating a UTM appliance and vendor can prove to be an overwhelming exercise.  How can you make sure that you're getting the security that your organization needs without breaking the bank? Check out our UTM Buyer's Guide for more information on what you should be looking for!

  • 4
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now