I guess this was to TUFF for y'all huh?  Actually I've already determined that it will work, but is not recommeded..The problem I was having was caused by another firewall ( checkpoint...).  The PIX was setup correctly.  You can also use the same command to permit Xwindows sessions thru the firewall....For Xwindows this is what I did:
 
established tcp 0 6000 permitto tcp 6000 permitfrom tcp 1024-65535
 
This says "if there is a connection from any source port to destination port 6000, permit return packets with destination port 6000 and source port range between 1024-65535".  
 
Kenny
----- Original Message -----
Sent: Tuesday, July 11, 2000 6:20 PM
Subject: WIN2K and PIX

Has anyone needed to allow all Win2k admin BS through a PIX firewall?  RPC is about the only thing not working.  I've got it opened up 100% - including the following for RPC:
 
established tcp 0 135 permitto tcp 135 permitfrom tcp 1024-65535
 
Anyone dealt with this before?  There are Win2K boxes off of DMZs that need to communicate all the Win2k Active Directory s#&t....Thanks
 
Kenny

Reply via email to