Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations MikeeOK on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Config PIX 506 and PIX 501's for VPNs

Status
Not open for further replies.

chmilz

Programmer
Jan 10, 2001
94
CA
Hi all,

I am looking for information on how to configure several PIX 501 routers and a PIX 506 router for VPN access. Here is the network layout...

The company is a province wide company. They have a central server running Windows 2000 Server and 7 other locations throughout the province, each of them running on their own internal networks with Windows 2000 Server set up at each of the 7 locales.

What they want to be able to do is VPN each remote site with the central server site. They will be using Cisco PIX 501 routers at each remote site and a Cisco PIX 506 router at the central server site.

The central server site is going to be the VPN Server and the 7 remotes will be clients. Any help would be greatly appreciated. I have one of the PIX 501 routers sretup at my office to test with.... thanks for all your input!

Curtis
 
I'm not sure if you will run into connection issues using a PIX 506 as the central office's VPN termination. However, using PIX 501's at the remote offices should be fine if they don't have a lot of people there.

I would recommend getting a Cisco VPN Concentrator 3005 for use at your central location. You can pick it up for about $2500.00 US.
 
Thanks for the info baddos!

What I was thinking of doing was setting the Central Windows 2000 Server to be the VPN Server... I guess what I really was asking is whether I need to manually open ports on each router to allow the VPN connections to pass through each router at each location.

Thanks again!

Curt
 
The PIX's you will have to setup an access-list when you create your VPN that allows traffic from the central office to go through the vpn to the remote office. You apply it to the vpn and not the interface though.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top