Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

simple pix configuration.. not!

Status
Not open for further replies.

mjhonline

IS-IT--Management
Dec 26, 2000
26
GB
hi,

I've just inherited the task of setting configuring & installing a pix firewall which I have absolutely no experience in.

We currently have a cisco 3600 link all remote offices, lets say this router has an ip address of 10.0.0.1

it currently directs all external traffic to a d-link dsl router which has an internal ip address of 10.0.0.4 and an isp assigned static ip address of 212.x.x.x

this is where I get stumped, how do I configure the pix in this environment?

Any pointers greatly appreciated.

Mike.
 
If your trying to replace your d-link.

I'd start by getting the PIX configured with an internal address via the console cable. Then setting up the PDM location command so that you can use the GUI.

After that you can setup rules, the outside address,routes to all your internal networks that are seperated by the 3600's...

Jeff
 
the problem is that I have to keep the d-link as it connects directly to dsl, the pix does not have that ability.
 
The PIX is able to connect directly to your DSL modem if it has a RJ-45 connection. The PIX is capable of obtaining a DHCP address with the following config:

(config)# ip address outside dhcp setroute

also the PIX can be your DHCP server for internal clients with the following config:

dhcpd address 192.168.1.x-192.168.1.x
dhcpd lease 3600 (or any timeframe you like)
dhcpd domain YOURCOMPANY.com
dhcpd enable inside
global (outside) 1 interface
nat (inside) 1 0.0.0.0 0.0.0.0
 
It probably is that your dlink is called a DSL router because it has a PPOE client built into it. Chances are you are not using that functionality. Try putting any computer on the DSL modem using the static address for its IP configuration. (All security issues aside.) If you are able to surf the internet, (might need to reboot the DSL modem to get it to work), then the PIX will work there also.
 
thanks for all the advice.. better jump in the deep end and try to configure it then!
 
I didn't realize the pix picked up pppoe support, I see from the cisco website it was recent.

Thanks
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top