Solved

Cisco Pix 506 VPN -

Posted on 2012-04-03
5
272 Views
Last Modified: 2014-10-20
Hi there
I currently have a Cisco Pix 506 device which has site-to-site vpns to multiple sites across the world. It also terminates Client vpns to that device. Now, one of the vpn users requires access connecitity to another site through the vpn client and across the site-to-site. The problem is, there is no reverse-path defined on the other site to direct back to the vpn subnet on the local router and there is no way to add one.
Is it possible to NAT a clients vpn address to the local lan ip so when it is sent to the other site it can return.

Any questions please let me know.

Thanks for your time.
0
Comment
Question by:admerritt
5 Comments
 
LVL 57

Assisted Solution

by:Pete Long
Pete Long earned 250 total points
ID: 37805573
Not with a Pix 500 series sorry - you need to be running version 7 - which is ASA only Im afraid sorry :(

Cisco Firewall VPN "Hair Pinning"

Pete
0
 
LVL 35

Accepted Solution

by:
Ernie Beek earned 250 total points
ID: 37805783
To clarify:

Q. Which devices support PIX 7.x?

A. PIX 515, PIX 515E, PIX 525, PIX 535 and all of the Cisco ASA 5500 Series Adaptive Security Appliances (ASA 5510, ASA 5520, and ASA 5540) support software version 7.x and later.
The PIX 501, PIX 506E, and PIX 520 Security Appliances are not supported in software version 7.x.


Source: http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_qanda_item09186a00805b87d8.shtml

Though it seems there are 'creative' ways to get to 7.0x : http://www.techexams.net/forums/ccnp-security/16730-cisco-pix-506-a.html
But I don't know if you want to go that far.......

And because it's almost getting end-of-everything: http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5708/ps5709/ps2030/ps4336/prod_eol_notice0900aecd80731dfa.html

You might want to consider to get a new(er) one.
0
 
LVL 15

Expert Comment

by:The_Warlock
ID: 37811855
Agreed. It isn't possible with the device you currently own.
0

Featured Post

Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

Join & Write a Comment

This article is a step by step guide on how to create a basic PTP link using Ubiquiti airOS devices. This guide can be used on the following Ubiquiti AirMAX devices. Nanostation, Bullets, AirBridge, Nanobeam, NanoBridge to name a few. Please review …
This is an article about my experiences with remote access to my clients (so that I may serve them) and eventually to my home office system via Radmin Remote Control. I have been using remote access for over 10 years and have been improving my metho…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now