Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Access PDM over tunnel

Status
Not open for further replies.

marhoul

IS-IT--Management
Jun 10, 2002
28
AU
Could anyone help with accessing PDM over a IPSEC tunnel. The inside interface is 192.168.0.2, and the PDM can be accessed from this subnet no worries.

I have a VPN IP pool of 192.168.12.0 255.255.255.0 and would like to be able to access either the external address of XXX.XXX.XXX.XXX or internal to use the PDM once my encrypted session has been established.

I am using a PIX 515 with 3 interfaces, PIX version 6.2(1) and PDM 2.0(2).

Thanks in advance.

Cheers,

Mark
 
Since this issue is open, does PDM works fine over VPN? I am planning to setup this enviornment. Hope there are no problems over IPsec.
Login to workstation (192.168.0.x)using Remote control application which is local to PIX inside interface(over VPN of course). And access PDM from it!!
 
That is how I currently view the PDM, but it is unescessary since I believe the PDM should be able to run through the VPN tunnel. I might be wrong and then I will happily use the method you talk about.

The only problem is that the remote window doesn't always display the the browser windows the best and as a result not all content can be viewed.

Mark
 
Does it mean you have tried to access PDM over IPsec and its slow?? (I think it will be slow, because you are tranfeering each windows session over VPN)

As per my solution, only KeyStrokes, mouse and screen refresh are send over VPN. Give a try and let me know.

John
 
I am currently using Remote Control software of a client on the inside. I have not been able to get it working so I can access the VPN through a tunnel IPSEC web browser session.

The problems with Web Browsers not showing up everthing correctly is through the Remote Control method.

Mark
 
To access the PDM from VPN connections coming in from the outside:

pdm location 192.168.12.0 255.255.0.0 outside
http 192.168.12.0 255.255.0.0 outside

For telnet management from a vpn connection:

telnet 192.168.12.0 255.255.0.0 outside

You should be able to run the PDM just fine. The only potential issue is really with the speed of the connection. DSL or Cable modem access would obviously be preferred over analog dialup.
 
That doc does have the commands needed to make this work.

I forgot to mention the access-list that the nat 0 command references. The access list needs to have an entry to allow traffic from the VPN clients to the outside interface of the pix to pass without being nat'd. I also assumed that everyone knows that you can't manage the pix from the outisde without securing a VPN connection.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top