Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Problem with PIX access to SSH

Status
Not open for further replies.

CocoSavage

IS-IT--Management
Mar 29, 2001
11
AU
Hi,

Our pix is working fine with our current ACL's but when I add a new one like:

access-list outside_access permit tcp any host xxx.xxx.xxx.xxx eq 22/ssh

It doesnt work. This is for any port/protocol. The log records:

Deny TCP(no connection) from yyy.yyy.yyy.yyy/2543 to xxx.xxx.xxx.xxx/22 flags RST on outside interface

Is there something I am missing with adding a new ACL, is there something else I need to do to enable it other then add it and clear xlate?
Any help would be great

thanks

coco
 
Hi

Have you got your static setup?? ie..

static (inside,outside) <external IP> <internal IP>

also does it use NAT??

Simon
 
Yep,

I have the static mapping and it does use NAT

coco
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top