[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now


pix515e - configuration

Posted on 2014-01-27
Medium Priority
Last Modified: 2014-02-05
Hi Expert,

I have an old pix515e which I took out of the cabinet and I have placed the ip address for both inside and out, I'm trying to have it NAT traffic to go out the internet. From to using DG

Can someone help what I'm missing?

interface Ethernet0
 nameif outside
 security-level 0
 ip address
interface Ethernet1
 nameif inside
 security-level 100
 ip address

global (outside) 1 interface
nat (inside) 1
route outside 1

access-list outside_acl extended permit icmp any any
access-list inside_acl extended permit ip any any
access-list outside_acl extended permit ip any any
Question by:gsmith888
  • 4
  • 3
LVL 25

Expert Comment

by:Ken Boone
ID: 39812679
Nothing is wrong with what you are showing.  

Are you interfaces up?

Can you ping internal devices from the PIX?

Can you ping the gateway from the PIX?

Expert Comment

ID: 39813064
Agreed it looks simple but complete. Do you have any logging turned on so we can see the log messages?

Author Comment

ID: 39815118
could the issue be "global (outside) 1 interface" which should be "global (outside) 1" ?
Exciting career futures for women in IT

Education has the power to transform lives and open the door to new career opportunities. By earning an IT degree from WGU, you can become a highly skilled IT professional. Get the credentials and certifications you need to become a leader in this rewarding field.  

LVL 25

Accepted Solution

Ken Boone earned 2000 total points
ID: 39815125
nope interface is fine.. can you ping all of the items I asked about?

Author Comment

ID: 39815130
I can ping the internal LAN ip -
I cannot ping the outside WAN IP - within the LAN
LVL 25

Expert Comment

by:Ken Boone
ID: 39815151
But can you ping the outside gateway from the pix itself?

Author Comment

ID: 39815171
I do not have access right now, can you provide your thinking for two scenario:

1. If I'm able to ping from PIX to WAN IP
2. If I'm not able to ping from PIX to WAN IP
LVL 25

Expert Comment

by:Ken Boone
ID: 39815237
If you are able to ping from pix to gateway ip then can you ping beyond it...say from the pix.  That would mean your internet connection is good and that your pix is able to reach the internet.

If you are not able to ping from pix to gateway ip then you have a connection or internet problem.

Featured Post

The IT Degree for Career Advancement

Earn your B.S. in Network Operations and Security and become a network and IT security expert. This WGU degree program curriculum was designed with tech-savvy, self-motivated students in mind – allowing you to use your technical expertise, to address real-world business problems.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

On Feb. 28, Amazon’s Simple Storage Service (S3) went down after an employee issued the wrong command during a debugging exercise. Among those affected were big names like Netflix, Spotify and Expedia.
This article explains the fundamentals of industrial networking which ultimately is the backbone network which is providing communications for process devices like robots and other not so interesting stuff.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …

834 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question