Solved

SSH PIX

Posted on 2009-07-07
4
406 Views
Last Modified: 2013-11-16
I am trying to configure one pix version 6.3 and 7.2 to use putty and SSH login to the pix from inside the LAN from only 3 LAN ip addresses all other IP's would not be allowed login. if needed i will can provide more info. looking for the correct commands.
0
Comment
Question by:jeffsteffy
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 
LVL 9

Expert Comment

by:jfer0x01
ID: 24799393
Hi,
make a  acl 101 deny tcp 0.0.0.0 255.255.255.255 your.sshd.ser.ver 0.0.0.0  eq 22

and a

acl 101 permit tcp 10.10.1.1-3 255.255.255.0 your.sshd.ser.ver 0.0.0.0 eq 22

where the 10.10.1.1-3 is the range of ips you want to allow, if not a range, enumerate them one by one

Jfer
0
 
LVL 2

Author Comment

by:jeffsteffy
ID: 24799440
What does this part do? your.sshd.ser.ver 0.0.0.0
0
 
LVL 9

Accepted Solution

by:
jfer0x01 earned 500 total points
ID: 24799580
the ip of the ssh device you are going into, and the subnet
0
 
LVL 9

Expert Comment

by:jfer0x01
ID: 24799893
actually,

just try access-list 101 permit tcp 10.10.1.1-3 255.255.255.0 your.sshd.ser.ver 0.0.0.255 eq 22

the last set of numbers before the 22 is the wildcard bit for the subnet

Jfer
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…

729 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question