Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Search results for query: *

  • Users: JMCraig
  • Content: Threads
  • Order by date
  1. JMCraig

    Outbound traffic works; inbound does not

    Hi Folks, To make a long (frustrating!) story short, I'm trying to get an old Pix 501 I had reconfigured to fill in for an ASA 5505 that is giving me trouble. This is a bonehead simple setup: the Pix's inside interface is defined to match the public IPs of a small subnet and several boxes with...
  2. JMCraig

    Formula to substitute for SQL view

    Trying to create a report that would be dead easy in plain SQL but trying to do it without a SQL view is beyond my CR capability and it turns out the SQL view tends to get removed during a DB upgrade for the 3rd-party application software. Crystal Reports 11 MS SQL Server 2008 Here's the basic...
  3. JMCraig

    Anti-spoofing disrupting inside to dmz traffic

    Hi Folks, I've got the basic 5505 license (so boxes on the dmz interface cannot initiate connections to boxes on the inside interface--traditional dmz setup). But, with anti-spoofing enabled on the outside interface, I also can't initiate traffic from a box on the inside interface to a dmz box...
  4. JMCraig

    ACL's from PIX 501 not adequate on ASA 5505--huh?

    Hi Folks, I'm trying to migrate a really simple setup from a PIX 501 (that I keep having to put back into service 'cause I can't get the ASA 5505 to behave the way the PIX does). The issue is this: on the PIX, I've got common ACL entries that allow access to some basic things like email and...
  5. JMCraig

    Firewall log makes Skype look a lot like a botnet zombie

    Hi Folks, Just so no one else gets sucked into this the way I did: I noted some suspicious traffic on my firewall's log as I was working on resolving some connectivity issues to some resources that are supposed to be available (and were until we put in the new firewall appliance last week)...
  6. JMCraig

    Implicit rules and access lists

    Hi Folks, I thought I knew my way around my old PIX 501s pretty well, but this ASA 5505 has some curves I (apparently) haven't figured out. Looking at the GUI ASDM program, it shows an implicit ACL rule for my vlan2 (inside): permit service: ip source: any destination: any less secure...
  7. JMCraig

    Practical difference? Public IP vlan vs. Privat IP w/ NAT

    Hi Folks, I'm in the process of replacing a PIX 501 /w an ASA 5505 (basic license). My ISP routes two different blocks of IPs through to my one ISP port: x.x.x.128/29 x.x.x.176/29 On the old PIX, I could only use the first of these blocks (got them to set up the 2nd block in anticipation of...
  8. JMCraig

    Basic ASA 5505: 2 ISP connections; possible?

    Hi Folks, I think I may need something other than what I've got (rats). What I need to be able to do is have a LAN with two different distinct sets of public IPs from my ISP (apparently I need to be able to set up two external ports/VLANs on the 5505--one for each block of IPs). So, what it...
  9. JMCraig

    ISP routing two discontiguous subnets; can PIX 501 handle that?

    Hi Folks, OK. Here's the mess I've got myself into. PIX 501's outside port is set for DHCP; the ISP routes 204.x.x.128/29 IP subnet to me. Inside interface is set to 204.x.x.129/255.255.255.248--that all works great. Been working for a long time. Now, I want to add another 8-IP subnet of...
  10. JMCraig

    Need replacement for PIX 501

    Hi Folks, I need to replace a couple of PIX 501s I have (probably with just one device). The things I need are: 1. More substantially more throughput on the Internet port (and perhaps on the switch also if I can get it without spending a lot). The firewall device will connect to a 50Mbps...
  11. JMCraig

    Newbie ? RE access to Internet via VPN w/ ASA 5505?

    Hi Folks, This is one of those simple questions that I can't seem to find the answer to in Cisco's docs (terminology problems perhaps). What I need to do is have my remote colleagues be able to connect via VPN and then go out to the Internet looking like they're coming from the address of the...
  12. JMCraig

    LSI SAS drivers w/ RH EL 5

    Hi Folks, I've been fussing with what should be a fine piece of hardware (Supermicro MB w/ LSI SAS1068e RAID controller) and have not been able to get the drivers to work w/ a trial install of RH EL 5 (2.6.18-92.el5). The OS is installed and happy on two SATA drives, but the RAID...
  13. JMCraig

    Cisco PIX v. 7 software for 501?

    Hi Folks, I noticed this interesting-sounding comment in the VPN forum: This particular issue is a real pain and before I give up on my PIX 501's and send them off to eBay buyers, I'd be very interested to know if the v 7 software is available for the 501. And, if it is, what kind of support...
  14. JMCraig

    VPN client software connect to PIX VPN setup?

    Hi Folks, We provide support to a number of remote sites that give us access via a Cisco VPN arrangement. They typically figure that we'll use the Cisco VPN client software setup to connect, but it seemed to me that if we had the info to do that, we should be able to configure our PIX box to do...
  15. JMCraig

    Error 12315 during LOAD TRAN command

    Hi Folks, Anyone successfully dealt with this one? There's not even a write-up on the error in the Trouble-shooting Guide, as far as I can tell. I get this trying to load a transaction dump. Msg 12315, Level 21, State 1: Server 'sybase', Line 1: Corrupt page, Internal error: Mismatch between...
  16. JMCraig

    Capture Client SQL?

    Hi Folks, I'm hoping to find a centralized way to capture the SQL generated by clients running against an MS SQL Server (similar to what you can do via the audit functions in Sybase). Is there any way to use the Profiler or some other tool to configure capture of the SQL that a client sends to...
  17. JMCraig

    Confused by pkgadd error

    Hi Folks, OK, simple problem (except for a Solaris newbie like me!). I am installing OpenSSH on a pair of servers. The first server went fine. Now I'm trying to do it on the second one: it won't add the packages. FTP'd the packages from freeware.sun.com (it has a number of different packages...
  18. JMCraig

    What's blocking outbound port 25--ethereal sees nothing....

    Hi Folks, I didn't know what forum to put this in--it's hardly a perfect fit anywhere. At any rate, here goes: I have a product that I've sold and set up more than 2 dozen times--it uses SMTP to send email. Very simple setup--you define the SMTP server and it works. Now I have a client where I...
  19. JMCraig

    TCP connection won't stay open through PIX

    Hi Folks, I've got a really simple setup with a PIX 501 protecting a little 8-IP public subnet. Each of the five boxes behind the PIX has it's own public IP address (the ISP is handling the routing to the subnet via a single address that the PIX hooks up with via DHCP). In general, this works...
  20. JMCraig

    Inside host's process using inside IP as its "public" address

    Hi Folks, I've got what should be a simple problem: A process that wants to listen on a given port works fine until it tells the client what port to continue the interaction on. It then tells the client process to continue the conversation on the inside IP address (192.168.1.148 rather than...

Part and Inventory Search

Back
Top