<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Tech-Recipes &#187; Cisco firewall</title>
	<atom:link href="http://www.tech-recipes.com/category/networking/cisco-networking/cisco-firewall/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.tech-recipes.com</link>
	<description>Computer and technology tutorials and guides</description>
	<lastBuildDate>Fri, 10 Feb 2012 14:23:52 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>PPTP on Cisco ASA or PIX 6.3 or later code</title>
		<link>http://www.tech-recipes.com/rx/2222/pptp_on_cisco_asa_or_pix_6_3_or_later_code/</link>
		<comments>http://www.tech-recipes.com/rx/2222/pptp_on_cisco_asa_or_pix_6_3_or_later_code/#comments</comments>
		<pubDate>Mon, 19 Mar 2007 10:25:55 +0000</pubDate>
		<dc:creator>Al Banks</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[In PIX 6.3 and later, support for PPTP through the PIX has been added.

Before version 6.3, a PIX needed to be configured to allow the GRE tunnel back from a PPTP server.  
As of version 6.3, the firewall merely needs:
fixup protocol pptp 1723
Prior to 6.3, the following was needed:
 static (inside,outside) outside_ip inside_ip netmask [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/2222/pptp_on_cisco_asa_or_pix_6_3_or_later_code/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco PIX Logging: Debugging to Emergency</title>
		<link>http://www.tech-recipes.com/rx/2094/cisco_pix_logging_debugging_to_emergency/</link>
		<comments>http://www.tech-recipes.com/rx/2094/cisco_pix_logging_debugging_to_emergency/#comments</comments>
		<pubDate>Fri, 09 Feb 2007 07:53:37 +0000</pubDate>
		<dc:creator>aaronm</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[This article is an outline of how to set up logging on your PIX, viewable to a syslog or through the show log statement.  This information is targeted toward the more recent versions of PIX IOS, the older versions run along the same concept but have some different commands. 

Logging is rated on 8 [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/2094/cisco_pix_logging_debugging_to_emergency/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Changing an ACL on a Cisco Firewall</title>
		<link>http://www.tech-recipes.com/rx/1173/changing_acl_on_cisco_firewall/</link>
		<comments>http://www.tech-recipes.com/rx/1173/changing_acl_on_cisco_firewall/#comments</comments>
		<pubDate>Mon, 06 Feb 2006 09:22:13 +0000</pubDate>
		<dc:creator>aaronm</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[Although changing an ACL on a Firewall is almost exactly like a router, there are a couple nuances that people should know.  Here are some tips and best practice material.

1.  When you remove an access-list, it is automatically removed from the interface.  *This is a nice change from routers where you have [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/1173/changing_acl_on_cisco_firewall/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Port redirect to inside host on a Cisco PIX firewall</title>
		<link>http://www.tech-recipes.com/rx/711/port-redirect-to-inside-host-on-a-cisco-pix-firewall/</link>
		<comments>http://www.tech-recipes.com/rx/711/port-redirect-to-inside-host-on-a-cisco-pix-firewall/#comments</comments>
		<pubDate>Thu, 23 Sep 2004 17:20:42 +0000</pubDate>
		<dc:creator>lvance</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[How to configure a PIX to redirect traffic to an inside host via port re-direction.  An expample would be if you allowed your PIX to get its external address via DHCP but you wanted to access a ftp server on the inside of your firewall as well as maybe another host for vnc.  [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/711/port-redirect-to-inside-host-on-a-cisco-pix-firewall/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Cisco PIX: Password recovery/reset</title>
		<link>http://www.tech-recipes.com/rx/639/cisco-pix-password-recoveryreset/</link>
		<comments>http://www.tech-recipes.com/rx/639/cisco-pix-password-recoveryreset/#comments</comments>
		<pubDate>Mon, 30 Aug 2004 22:04:13 +0000</pubDate>
		<dc:creator>qmchenry</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[The password paradox is a commonplace condition.  Make your passwords strong and difficult to guess, change them frequently, and don&#8217;t write them down.  It a formula for forgetfulness.  Eventually, many organizations find themselves locked out of their PIX.  This recipe describes the process for resetting the PIX password.

This information describes resetting [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/639/cisco-pix-password-recoveryreset/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>PPTP (Point-to-Point Tunneling Protocol) through PIX Firewall</title>
		<link>http://www.tech-recipes.com/rx/382/pptp-point-to-point-tunneling-protocol-through-pix-firewall/</link>
		<comments>http://www.tech-recipes.com/rx/382/pptp-point-to-point-tunneling-protocol-through-pix-firewall/#comments</comments>
		<pubDate>Mon, 09 Feb 2004 13:51:36 +0000</pubDate>
		<dc:creator>Al Banks</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[pix]]></category>
		<category><![CDATA[point-to-point]]></category>
		<category><![CDATA[pptp]]></category>
		<category><![CDATA[tunneling]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[How to pass PPTP traffic through a PIX Firewall
This recipe is outdated.  


This recipe is outdated.    See this one:  http://www.tech-recipes.com/rx/2222/pptp_on_cisco_asa_or_pix_6_3_or_later_code.
Cisco PIX Firewalls require two elements to pass traffic from outside (higher security) to inside (lower security):  a static translation and a conduit.
For this example, assume a server has IP [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/382/pptp-point-to-point-tunneling-protocol-through-pix-firewall/feed/</wfw:commentRss>
		<slash:comments>18</slash:comments>
		</item>
		<item>
		<title>Cisco PIX: Allow traffic to an internal host</title>
		<link>http://www.tech-recipes.com/rx/353/cisco-pix-allow-traffic-to-an-internal-host/</link>
		<comments>http://www.tech-recipes.com/rx/353/cisco-pix-allow-traffic-to-an-internal-host/#comments</comments>
		<pubDate>Thu, 29 Jan 2004 11:36:45 +0000</pubDate>
		<dc:creator>Al Banks</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[pix]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[Permit selected traffic to an internal host.

First, a static mapping must be made for the host.  There is another recipe for this configuration.
static (inside,outside) 1.1.1.1 192.168.0.100 netmask 255.255.255.255
then:
To allow traffic, a conduit must be constructed.  For example, to allow ICMP (ping) traffic to all hosts from anywhere (bad idea):
 conduit permit icmp any [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/353/cisco-pix-allow-traffic-to-an-internal-host/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
		</item>
		<item>
		<title>SSH configuration on PIX Firewall</title>
		<link>http://www.tech-recipes.com/rx/215/ssh_configuration_pix_firewall/</link>
		<comments>http://www.tech-recipes.com/rx/215/ssh_configuration_pix_firewall/#comments</comments>
		<pubDate>Mon, 27 Oct 2003 12:35:30 +0000</pubDate>
		<dc:creator>Al Banks</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>
		<category><![CDATA[cisco]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[Encrypted remote sessions to PIX Firewalls with SSH.

Secure SHell (SSH) provides encrypted terminal sessions, along with a lot of other neat features.
www.cisco.com has configuration examples for practically everything under the planet, including the start for this one.
To configure a Cisco PIX Firewall to support SSH, enter the following commands:
hostname myfirewall
domain-name mydomain.mytld
ca gen rsa key 1024
ssh [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/215/ssh_configuration_pix_firewall/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Static map to internal device on a PIX</title>
		<link>http://www.tech-recipes.com/rx/149/static-map-to-internal-device-on-a-pix/</link>
		<comments>http://www.tech-recipes.com/rx/149/static-map-to-internal-device-on-a-pix/#comments</comments>
		<pubDate>Sat, 04 Oct 2003 09:53:24 +0000</pubDate>
		<dc:creator>lvance</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>
		<category><![CDATA[access]]></category>
		<category><![CDATA[accessibility]]></category>
		<category><![CDATA[device]]></category>
		<category><![CDATA[devices]]></category>
		<category><![CDATA[list]]></category>
		<category><![CDATA[maps]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[pix]]></category>
		<category><![CDATA[service]]></category>
		<category><![CDATA[services]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[How to add a static map through a PIX to a device on the inside of your network.  A one to one translation.

static (inside,outside) (outside IP) (inside IP) netmask 255.255.255.255
Example:
static (inside,outside) x.x.x.x x.x.x.x netmask 255.255.255.255
Now you have a static nat to a specific device on the inside of your PIX.  You can now [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/149/static-map-to-internal-device-on-a-pix/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Configure PIX interface by DHCP</title>
		<link>http://www.tech-recipes.com/rx/86/configure-pix-interface-by-dhcp/</link>
		<comments>http://www.tech-recipes.com/rx/86/configure-pix-interface-by-dhcp/#comments</comments>
		<pubDate>Thu, 18 Sep 2003 14:46:57 +0000</pubDate>
		<dc:creator>qmchenry</dc:creator>
				<category><![CDATA[Cisco firewall]]></category>
		<category><![CDATA[address]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[remote]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[settings]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[In many situations such as remote sites connected by DSL or cable modem, the outside interface IP address of a firewall must support dynamic addressing by DHCP.

To configure the outside interface to obtain its settings by DHCP:
nameif ethernet0 outside security0
ip address outside dhcp setroute
The firewall will immediately try to receive an IP address and settings [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/86/configure-pix-interface-by-dhcp/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached (User agent is rejected)
Database Caching 9/15 queries in 0.680 seconds using memcached
Object Caching 593/653 objects using memcached

Served from: www.tech-recipes.com @ 2012-02-10 07:34:49 -->
