RE: PIXL: no client connectivity [7:28685]

2001-12-10 Thread Gibb, Jake
Isn't there an implicit deny at the end of your access list? access-list acl_ping permit icmp any any Should you add the following to permit http traffic at least. You will probably need dns resolution as well. access-list acl_ping permit tcp 80 any any -Original Message- From: Pierre

Searched the archives but didn't find this scenario.. [7:28114]

2001-12-04 Thread Gibb, Jake
We have two remote offices that use Appletalk over a Frame-Relay line currently. I will be installing Pt-2-Pt lines in each office giving them each local ISP access to the Internet. I would like to use a Cisco PIX in each office to establish an IPSEC tunnel between the two. The clincher is how to

RE: VPN client, PIX, internet access [7:27870]

2001-11-30 Thread Gibb, Jake
take advantage of the clients local ISP connection for unknown IP requests that are not in our split tunneling list. -Original Message- From: John Chang [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 1:56 PM To: Gibb, Jake; [EMAIL PROTECTED] Subject: RE: VPN client, PIX

RE: VPN client, PIX, internet access [7:27870]

2001-11-30 Thread Gibb, Jake
Don't enable split tunneling on the concentrator for that grop when using the Cisco VPN client or simply route all traffic through the VPN tunnel. -Jake -Original Message- From: John Chang [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 1:29 PM To: [EMAIL PROTECTED] Subject:

RE: VPN back door [7:27736]

2001-11-29 Thread Gibb, Jake
er [mailto:[EMAIL PROTECTED]] Sent: Thursday, November 29, 2001 3:46 PM To: '[EMAIL PROTECTED]' Cc: Gibb, Jake Subject: RE: VPN back door I recently installed a VPN at work (city goverment). You would be much better off disabling split-tunneling at the concentrator level rather than tryi

RE: VPN is a Backdoor !!! [7:27725]

2001-11-29 Thread Gibb, Jake
VPN could be considered a backdoor. If Joe User has a broadband connection at home with no firewall or local client firewall installed then when he/she connects to your VPN that is essentially a conduit for attackers to potentially compromise. This is an issue that I am dealing with now. Ciscos VP

RE: PIX 6.1(1) SSH to outside [7:26502]

2001-11-16 Thread Gibb, Jake
You can also do "ca zeroize rsa" to clear the key then do "ca gen rsa key 512" to generate a new one. Just make sure your souce IP your connecting from is correct. Try turning on debug like "debug crypto ipsec|isakmp|ca" to determine what is being rejected. -Jake -Original Message- From

RE: PIX 6.1(1) SSH to outside [7:26502]

2001-11-16 Thread Gibb, Jake
For example ssh 1.1.1.1 255.255.255.255 outside That should do it. -Jake -Original Message- From: Hansraj Patil [mailto:[EMAIL PROTECTED]] Sent: Friday, November 16, 2001 12:21 PM To: [EMAIL PROTECTED] Subject: RE: PIX 6.1(1) SSH to outside [7:26502] Don't to have specify client IP

VPN monitoring software [7:26235]

2001-11-14 Thread Gibb, Jake
Has anyone used Ciscos VPN monitoring software? We have a handful of tunnels that we need remote management for.. -Jake Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=26235&t=26235 -- FAQ, list archives, and subscription info:

RE: Configuring hyperterminal to configure a Cisco router [7:24139]

2001-10-25 Thread Gibb, Jake
Sorry... -Jake -Original Message- From: Stephane Wantou Siantou [mailto:[EMAIL PROTECTED]] Sent: Thursday, October 25, 2001 12:50 PM To: [EMAIL PROTECTED] Subject: Configuring hyperterminal to configure a Cisco router [7:24133] Hi everybody, I have a Cisco router and a hyperterminal.

RE: IP database application [7:24128]

2001-10-25 Thread Gibb, Jake
Tried that. He heh ;) -Original Message- From: Ouellette, Tim [mailto:[EMAIL PROTECTED]] Sent: Thursday, October 25, 2001 1:13 PM To: Gibb, Jake Cc: '[EMAIL PROTECTED]' Subject: RE: IP database application [7:24128] wordpad? Sorry, couldn't resist. > ---

RE: Configuring hyperterminal to configure a Cisco router [7:24135]

2001-10-25 Thread Gibb, Jake
This should get you started. -Jake -Original Message- From: Stephane Wantou Siantou [mailto:[EMAIL PROTECTED]] Sent: Thursday, October 25, 2001 12:50 PM To: [EMAIL PROTECTED] Subject: Configuring hyperterminal to configure a Cisco router [7:24133] Hi everybody, I have a Cisco router

IP database application [7:24128]

2001-10-25 Thread Gibb, Jake
Does anyone have a good app for maintaining IP address information besides excel or notepad? Jake Gibb Kroll Senior Network Engineer 615.345.9880 (Office) 615.394.7887 (Cell) Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=24128&t=24128 ---

RE: WIC-T1 crossover? [7:24095]

2001-10-25 Thread Gibb, Jake
That's great! Thanks! -Jake -Original Message- From: Chris Theiss [mailto:[EMAIL PROTECTED]] Sent: Thursday, October 25, 2001 9:17 AM To: Gibb, Jake Cc: [EMAIL PROTECTED] Subject: Re: WIC-T1 crossover? [7:24095] If you have the tools, you can make a T1 crossover cable pretty e

WIC-T1 crossover? [7:24095]

2001-10-25 Thread Gibb, Jake
Is it possible to take a WIC-T1 card used in a Cisco 1600 and somehow make a crossover cable to connect to another 1600 with a WIC-T1 simulating a serial link (PPP, Frame-Relay, etc.) -Jake Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=24095&t=24095