Solved

Cisco Pix 506 VPN -

Posted on 2012-04-03
5
279 Views
Last Modified: 2014-10-20
Hi there
I currently have a Cisco Pix 506 device which has site-to-site vpns to multiple sites across the world. It also terminates Client vpns to that device. Now, one of the vpn users requires access connecitity to another site through the vpn client and across the site-to-site. The problem is, there is no reverse-path defined on the other site to direct back to the vpn subnet on the local router and there is no way to add one.
Is it possible to NAT a clients vpn address to the local lan ip so when it is sent to the other site it can return.

Any questions please let me know.

Thanks for your time.
0
Comment
Question by:admerritt
5 Comments
 
LVL 57

Assisted Solution

by:Pete Long
Pete Long earned 250 total points
ID: 37805573
Not with a Pix 500 series sorry - you need to be running version 7 - which is ASA only Im afraid sorry :(

Cisco Firewall VPN "Hair Pinning"

Pete
0
 
LVL 35

Accepted Solution

by:
Ernie Beek earned 250 total points
ID: 37805783
To clarify:

Q. Which devices support PIX 7.x?

A. PIX 515, PIX 515E, PIX 525, PIX 535 and all of the Cisco ASA 5500 Series Adaptive Security Appliances (ASA 5510, ASA 5520, and ASA 5540) support software version 7.x and later.
The PIX 501, PIX 506E, and PIX 520 Security Appliances are not supported in software version 7.x.


Source: http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_qanda_item09186a00805b87d8.shtml

Though it seems there are 'creative' ways to get to 7.0x : http://www.techexams.net/forums/ccnp-security/16730-cisco-pix-506-a.html
But I don't know if you want to go that far.......

And because it's almost getting end-of-everything: http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5708/ps5709/ps2030/ps4336/prod_eol_notice0900aecd80731dfa.html

You might want to consider to get a new(er) one.
0
 
LVL 15

Expert Comment

by:Robert Sutton Jr
ID: 37811855
Agreed. It isn't possible with the device you currently own.
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Let’s list some of the technologies that enable smooth teleworking. 
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

820 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question