Solved

pix515e - configuration

Posted on 2014-01-27
8
242 Views
Last Modified: 2014-02-05
Hi Expert,

I have an old pix515e which I took out of the cabinet and I have placed the ip address for both inside and out, I'm trying to have it NAT traffic to go out the internet. From 192.168.0.0/24 to 0.0.0.0 using DG 110.110.110.1

Can someone help what I'm missing?


interface Ethernet0
 nameif outside
 security-level 0
 ip address 110.110.110.3 255.255.255.248
!
interface Ethernet1
 nameif inside
 security-level 100
 ip address 192.168.0.1 255.255.255.0

global (outside) 1 interface
nat (inside) 1 0.0.0.0 0.0.0.0
route outside 0.0.0.0 0.0.0.0 110.110.110.1 1

access-list outside_acl extended permit icmp any any
access-list inside_acl extended permit ip any any
access-list outside_acl extended permit ip any any
0
Comment
Question by:gsmith888
  • 4
  • 3
8 Comments
 
LVL 24

Expert Comment

by:Ken Boone
ID: 39812679
Nothing is wrong with what you are showing.  

Are you interfaces up?

Can you ping internal devices from the PIX?

Can you ping the gateway from the PIX?
0
 
LVL 8

Expert Comment

by:amatson78
ID: 39813064
Agreed it looks simple but complete. Do you have any logging turned on so we can see the log messages?
0
 

Author Comment

by:gsmith888
ID: 39815118
could the issue be "global (outside) 1 interface" which should be "global (outside) 1 110.110.110.3" ?
0
 
LVL 24

Accepted Solution

by:
Ken Boone earned 500 total points
ID: 39815125
nope interface is fine.. can you ping all of the items I asked about?
0
Zoho SalesIQ

Hassle-free live chat software re-imagined for business growth. 2 users, always free.

 

Author Comment

by:gsmith888
ID: 39815130
I can ping the internal LAN ip -
I cannot ping the outside WAN IP - within the LAN
0
 
LVL 24

Expert Comment

by:Ken Boone
ID: 39815151
But can you ping the outside gateway from the pix itself?
0
 

Author Comment

by:gsmith888
ID: 39815171
I do not have access right now, can you provide your thinking for two scenario:

1. If I'm able to ping from PIX to WAN IP
2. If I'm not able to ping from PIX to WAN IP
0
 
LVL 24

Expert Comment

by:Ken Boone
ID: 39815237
If you are able to ping from pix to gateway ip then can you ping beyond it...say 4.2.2.2 from the pix.  That would mean your internet connection is good and that your pix is able to reach the internet.

If you are not able to ping from pix to gateway ip then you have a connection or internet problem.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The Cisco RV042 router is a popular small network interfacing device that is often used as an internet gateway. Network administrators need to get at the management interface to make settings, change passwords, etc. This access is generally done usi…
How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

895 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now