help needed in telnet configuration

Hello

We have two PIX 515E firewalls running in HA mode.

I wanted to set up a telnet access to firewall external interface.

The PIX version is 6.3 (5)

I kept the PC outside to outside interfaces.

PIX outside IP is 10.10.200.3, inside the address IP is 10.10.202.5 corresponding virtual IPs are 10.10.200.2 and 10.10.202.7

I tried following configurations:

PIX (config) #telnet 0 0 inside

PIX (config) #telnet 0 0 outside

PIX (config) #telnet 10.10.200.0 255.255.255.0 outside

PIX (config) #telnet 10.10.202.0 255.255.255.0 inside

PIX (config) #telnet 10.10.200.200 255.255.255.255 outside

I am able to Telnet to internal interface side use inside ip address.

But outdoor test pc with IP 10.10.200.200, I'm not able to telnet to PIX.

I enabled the logging console 5.

When I tried to telnet to the external virtual IP address, it shows not all traffic at the firewall.

If I try to the external interface I am able to see the traffic as

packets received source 10.10.200.200 in 10.10.200.3

any help in this configuration. I tried telnet test pc firewall.

Concerning

SKRAO

Hi Skrao,

PIX is not the feature to allow telnet from outside everything simply because it's insecurity... the only way to have telnet from outside is having an IPSec tunnel.

Alternatively, you can access the CLI from the outside by SSH, but you should have something like the following commands:

Firewall # config t

FireWall (config) related ca rsa

FireWall (config) # AC product key 1024 rsa

FireWall (config) # ssh the_ssh_IP 255.255.255.255 outside

FireWall (config) ca save all

You will use a client like SecurCRT or PuTTY SSH...

Don't forget to rate my post!

All the best

Osama

Tags: Cisco Security

Similar Questions

  • I don't see the icon of mail in the Panel, I need this to configure outlook express help pls

    I don't see the icon of mail in the Panel, I need this to configure outlook express help pls

    Hello

    1. are you referring to Windows mail or Outlook Express?

    2 have you made changes on the computer before this problem?

    3 What is a 32-bit or a 64-bit operating system?

    Try the next method and check if it helps.

    Method 1:

    Step 1:

    Change the setting from Control Panel and check if that helps.

    a. Click Start, then select Control Panel

    b. click on additional Options

    c. Select view 32-bit Control Panel items and click on Mail and check if that helps.

    Step 2:

    Change the display panel and check if it helps

    a. go to control panel,
    b. click view classic icons

    See also:

    http://Windows.Microsoft.com/en-us/Windows-Vista/where-is-Outlook-Express

    http://Windows.Microsoft.com/en-us/Windows-Vista/import-messages-into-Windows-mail-from-Outlook-Express

  • Need help with my System Configuration

    Hi people,

    I just needed a little help to redefine the configuration of my system as it was before it was modified in order to obtain the help of a technician of HP.

    I would even be willing to post my residential phone #, so that a microsoft technician could help me by phone or by virtual contact. in any case...

    I have a Toshiba Satellite that was purchased in 2008. It runs using Vista (x 64). Basically, I needed some advice to help me set up the configuration of the system. ((in such a way that only the 2 Volume 1)) globe Internet connection monitor battery 3) plan & 4) AVG antivirus are loaded and displayed when the system opens. In other words, it takes only the most basic and necessary things.

    See that this would be really useful if I could provide my phone number and could contact by phone and virtual rooms, so that you (the techie) could exploit my system and I can see what is happening.

    Waiting for a response. Thank you!!!

    Hi PRASANTH JOSEPH,.

    Perform a clean boot and check.

    Note: After the boot minimum troubleshooting steps, follow the link step 7 to return the computer to a Normal startupmode.

    You can also view the Microsoft support article.

    http://support.Microsoft.com/contactus

  • Need help with the IP configuration on vm ware for the installation of 11 GR 2 on linux vmware 6 on win7

    Need help with the ip configuration on/etc/hosts for the installation of 11 GR 2 on linux vmware 6 on win7.

    Let me know if you need more info... in fact I have a setting error while installation said

    -(/ etc/hosts has no correct entry for the host name)

    Host: 192.168.85.100

    Win7 ip: 192.168.1.x

    Thank you...

    (host computer)

    Win7 64 bit

    (vmware)

    Oracle Linux Server 6.3 version

    Release of Red Hat Enterprise Linux Server 6.3 (Santiago)

    Oracle Linux Server 6.3 version

    -(/ etc/hosts has no correct entry for the host name)

    Then post your/etc/hosts.

    Host: 192.168.85.100

    Win7 ip: 192.168.1.x

    Why 85? have you tried 192.168.1.100?

  • Error "the message could not be sent. "The setting for your outgoing e-mail [SMTP] Server may need to be configured" in Windows Live Mail

    I use Windows Live Mail and it seems to me that they receive an email but I get the following messages and cannot send emails

    The message could not be sent. The setting for your outgoing e-mail [SMTP] Server may need to be configured. To find the server settings for * address email is removed from the privacy *', please contact your e-mail service provider.

    Object "Marriot coverage."
    Server error: 550
    Server response: 550 must be authenticated.
    Server: 'auth.smtp.1and1.co.uk '.
    Windows Live Mail error ID: 0x800CCC79
    Protocol: SMTP
    Port: 587
    Secure (SSL): Yes

    Can someone help me please

    JO

    Original title: Email problems

    Check with your e-mail provider on how the various SMTP (especially the port) settings must be set to confirm that everything is correct. But, take a look at this setting and try to change it if necessary to see if it helps.

    WLMail open

    Right-click on the name of the email account

    Click 'properties '.

    Click the [servers].

    "my server requires authentication" is checked?

    If it is not try to delay it and and see what happens then.

    Note that you may need to click the [Settings] button to enter the necessary info he needed.

  • Please can someone help, need password CNU9497P2C

    I have the same problem and its driving me crazy... I need the BIOS password because I can't access to this

    [number of Series edited by Moderator]

    Please can someone help, need password

    HP MINI CQ10

    Sweb try.

    e9lovox27e

    3rd letter tiny L.

    4th and 6th letter lowercase o.

    Use this code to go into the BIOS.

    Disable all passwords that are enabled.

    If demand for CURRENT password using this code.

    Request NEW password just press ENTER.

    If asked to hit just to CHECK password to enter.

    Save and exit.

    REO

    I must inform you that these services are not endorsed by HP, and that HP is not responsible for any damages that may occur to your system using these services. Please be aware that you do so at your own risk.

  • Generic, RegEx Find & Replace Help Needed

    I'm in a time CAP and need some advice. I want to understand RegEx, but right now need a quick fix.

    I have a HUGE body of code that has a type of paragraph repeating everywhere, different contents in each particular case. I need to treat these paragraphs stand out by adding a rule above and below the surrounding text. The above rule is obvious, because of the class, this is the unique identifier for the paragraph, so I have to use for the weaker rule as well. I insert a string after the closing < /p > tag of each paragraph. I need a generic configuration that will escape the contents variable of all these paragraphs, but leave them intact afterwards.

    Let's say that this represents the structure of paragraph:

    < class p = "para_PN" > PN: [content Variable] < /p >

    That's what I have to do to move on hundreds of cases:

    < class p = "para_PN" > PN: [content Variable] < /p > < p > [element added to all] < /p >

    Is the closest, I came:

    To find:

    < class p = "para_PN" > ([^ <] *) < /p >

    Replace with:

    < class p = "para_PN" >$ 1 < /p > < p > [element added to all] < /p >

    But it stores the data for the first wildcard and stops later. Apparently I need a $ 2, $ 3, etc. for each instance and it is not convenient... It is already too.

    Any ideas or solutions would be appreciated.

    Thank you!

    Cayce

    I'm not sure that I fully understand what you're trying to do. If it is to make these paragraphs are distinguished by adding a rule upper and lower, the simplest way to do so is with CSS:

    {.para_PN}

    border-top: 3px solid #000;

    border-bottom: 3px solid #000;

    }

    However, if you want to add a text in a paragraph, it is the regular expression that you need:

    (

    [\w\W]+?

    )

    In replace with field:

    $1

    It is a new text.

    When you click on replace all, Dreamweaver goes through paragraphs correspondents one at a time. $1 replaces the original paragraph, and then the new text is added.

  • Need help setting up a configuration of VLAN special using WRVS4400N

    Hi guys,.

     

    I need your help on how to implement a configuration of VLAN somehow non-standard.

    The situation is the following:

    The customer wants a WLAN set up for the company and the other for guests. Now, wouldn't that be not so difficult if we'd be using the internal internet connection. But the WRVS4400N will be used to implement wireless LANs / VLAN only.

    The company uses the DHCP protocol on both of their subnets, provided by a Watchguard Firebox XTM510.

    Now, what we would do is set up the back door #1 for the connection to the subnet of the client and the #2 for the connection to the optional subnet for the guests. The first problem is that we were not able to configure DHCP forwards to the VLAN2. It works very well on the 1st but the 2nd doesn't allow that either ENabled or disabled, grayed out DHCP.

    To work around the problem that he would be allowed to set up DHCP WRVS4400N providing in itself for the subnet invited, but try that didn't work at all.

    Is it possible? Thanks in advance!

    Best,

    Ralph.


  • Need help on ASA5505 VPN configuration

    Hello

    For the life of me I can't get this to work. I know it is something simple, yet I've not thought about it.

    My father-n-law lives in China and they block a lot of sites in the United States. I have my set VPN in place in the United States for remote access, but to get there from China it still cannot connect to the United States sites. Can someone help me if I can get this working properly?

    Thanks in advance!

    EricO

    Great, thank you.

    Here's what you need to add:

    permit same-security-traffic intra-interface

    China-VPN network object

    255.255.255.0 subnet 192.168.100.0

    dynamic NAT interface (outdoors, outdoor)

    group attributes political kikou

    Split-tunnel-policy tunnelall

    no value in split-tunnel-network-list KaileY_splitTunnelAcl

  • Need help with Windows 8 Configuration of the updates to fail and return


    I solved the problem by doing this...

    I have disabled the start secure in the bios, reformat the computer through the partition to restore by using the 'Minimized Image' option, disabled the automatic updates, manually downloaded KB2871389 and KB2917499 and installed, then ran the troubleshooting of Windows Update, and it then allowed me to start the download from the Microsoft Store wihtout 8.1 get updated which were needed for Win8. As I type this 8.1 is the installation. I cross my fingers and hope it works. I have WAY too much time invested is this crazy situation. Microsoft is getting worse day by day.

  • Need help for IPSEC VPN configuration.

    Hello

    I'm trying to implement a VPN IPSEC connection in my GNS3 lab and all show commands and debugs does not seem to give me clues of what is wrong or missing... can someone please help me in my troubleshooting VPN config. Here is the config for Router 1

    R1 #sh run

    crypto ISAKMP policy 1

    preshared authentication

    Group 2

    ISAKMP crypto key 6 cisco123 address 200.20.1.1

    !

    !

    Crypto ipsec transform-set esp - esp-sha-hmac CISCO_SET

    !

    map VPN_map 10 ipsec-isakmp crypto

    ! Incomplete

    defined by peer 200.20.1.1

    Set security-association second life 190

    game of transformation-CISCO_SET

    match address INT_TRAFFIC

    !

    !

    interface Loopback1

    IP 172.16.1.1 255.255.255.255

    !

    interface Loopback2

    172.16.1.2 IP address 255.255.255.255

    !

    interface FastEthernet0/0

    IP 200.11.1.1 255.255.255.252

    IP ospf 1 zone 0

    automatic duplex

    automatic speed

    card crypto VPN_map

    !

    router ospf 1

    Log-adjacency-changes

    network 172.16.0.0 0.0.255.255 area 0

    !

    router bgp 65001

    no synchronization

    The log-neighbor BGP-changes

    200.11.1.0 netmask 255.255.255.252

    neighbour 200.11.1.2 distance - as 65030

    No Auto-resume

    !

    IP forward-Protocol ND

    !

    !

    IP http server

    no ip http secure server

    !

    INT_TRAFFFIC extended IP access list

    IP address 172.16.0.0 allow 0.0.255.255 192.168.0.0 0.0.255.255

    IP address 172.16.0.0 allow 0.0.255.255 192.168.0.0 0.0.255.255 connect

    end

    R1 #sh crypto isakmp his

    IPv4 Crypto ISAKMP Security Association

    status of DST CBC State conn-id slot

    IPv6 Crypto ISAKMP Security Association

    R1 ipsec crypto #show her

    Nill...

    R1 #sh debugging

    Encryption subsystem:

    Crypto ISAKMP debug is on

    Engine debug crypto is on

    Crypto IPSEC debugging is on

    Regulation:

    memory tracking is enabled

    R1 #sh ip route

    Gateway of last resort is not set

    200.20.1.0/30 is divided into subnets, subnets 1

    B 200.20.1.0 [20/0] via 200.11.1.2, 01:28:21

    200.11.1.0/30 is divided into subnets, subnets 1

    C 200.11.1.0 is directly connected, FastEthernet0/0

    172.16.0.0/32 is divided into subnets, 2 subnets

    C 172.16.1.1 is directly connected, Loopback1

    C 172.16.1.2 is directly connected, Loopback2

    R1 #ping 200.20.1.1

    Type to abort escape sequence.

    Send 5, echoes ICMP 100 bytes to 200.20.1.1, wait time is 2 seconds:

    !!!!!

    See you soon,.

    Fabio

    Nice Catch. The key word 'Incomplete!' should have reported it.

    Please close the issue as resolved - user error

    Thank you
    Brian

  • Need help in the PROCESS configuration (Maually in init.ora)

    Hello

    I want to install datbase schema using the remote control, but it throws me a message
    "UCR-6083: impossible - check requirement prerequisites for the selected item: WEBCENTER.
    Refer to the journal of the RCUS to C:\OracleRCU\ofm_rcu_win32_11.1.1.2.1_disk1_1of1\rcuHome\rcu\log\logdir.2013-01-22_16-03\rcu.log for more details.
    RCU - 6107:DB prerequisites for Init Param failed: PROCESS
    Current value is 150. It must be greater than or equal to 300. »

    I tried to change the process using SQL > change processes control system = 300 scope = spfile;
    and got the msg this modified system

    but still persisit error. I referred to a link
    UCR-6107, UCR-6092 for the same here it is mentioned in a post that some user has manually changed it a file init.ora ion... kindly helps change manually or through cmd...

    Reghards

    Beat

    Published by: Vivekk.Arora on January 22, 2013 02:58

    You must restart the instances after you change the setting.

  • Help needed in OracleBIAnalyticsApps.rpd configuration after full load

    Hi all

    It is Applications BI regarding 7.9.5 configuration with Oracle 11.5.10.

    We made all Configurations, our server Dac, Informatica server and our OLTP systems have been synchronized.
    We started the full load of debt, we had a few jobs that failed... We are looking for in fuctional configurations

    But my question is what is the configuration that we have 'OracleBIAnalyticsApps.rpd' repository.
    I mean this repository must know the details of the analytical warehouse, how to make this setting.

    In a forum
    http://www.rittmanmead.com/2008/07/06/performing-initial-data-loads-into-the-Oracle-BI-apps-795-data-warehouse/

    Rittman just informed on the settings of variables for user accounts
    any body can explain it in detail...


    Thank you
    Saran

    When you set up all your connections Pools in the Administration tool, click the Test button to verify that the password is correct. Then save and copy/publish the RPD to your presentation server.

    In addition, if you do not want block accounts, set the default 'number of connection failed try to lock after' Unlimited. You can do this in dbconsole or grid control, or change the default profile limit failed_login_attempts UNLIMITED;

  • Jet Office NP 2542: help needed please

    Hi there and thanks for reading.
    I do a university course and stay in student accommodation which benefits from a wireless network. I do my work on an iPad, so today, I went out and bought a hp office jet 2542 so I can print the course.
    I can't get the * beep * thing connected at all. The blue light continues to blink at me. The iPad is the printer ok and I printed a test page but I am puzzled any advice would be appreciated. Thank you
    Jen x

    Hello @jross6988,

    I understand that you are having problems when you try to connect the all-in-one printer HP Deskjet 2542 to your university network to enable wireless printing. I would like to help you today to this question. Now, just if you are aware, because it is a quality consumer printer it is supported only on home networks and is home to the office. The printer responds better on a core network with just a router and up to 10 devices connected to this network. You are in a University in the network is going to be much more advanced. He'll also probably switches and installation of network servers that can cause problems with communication with consumer products. Printers require some ports to open and compensation on the network so that the printer should not be considered a threat attempts to access the network. Therefore, a large part of the network of troubleshooting is to powercycle the router and ensure that certain ports and settings are configured to enable a printer communication. Chances are, you will not be able to follow these steps because COMPUTING at school will have control over this vast network. That being said, I have a few things for you to try.

    Step 1: Confirm network settings:

    When you run the Setup wireless using the USB cable on your computer, the program installation will usually gather information your computer network to set up the wireless on your printer. This means that your computer must be connected to the University network.

    • Make sure that the network is 2 GHz and 5 GHz not. Printers are not supported on 5 GHz networks
    • Make sure that your computer is not connected to a network of comments
    • Network password is case-sensitive. If you are prompted to type to ensure what you type into it exactly.
    • Needs to be disabled on the router MAC filtering
    • The multicast must be turned on on the router
    • Hello must be enabled on the router
    • The following ports must be open:
    • The incoming Ports (UDP): 137, 138, 161, 427, 80, 443
    • Coming out of Ports (TCP): 137, 139, 427, 9100, 9220, 9500, 5222 5223

    These parameters will have to be confirmed by the IT Department, if you do not have access to the router.

    Step 2: Configure the wireless:

    Because it is a base model printer, it doesn't have a front panel wireless configuration option. Therefore, you rely on a Windows or Mac computer to configure the wireless. You will need to have a USB cable for the wireless configuration.

    Because I don't know what operating system you use on your computer, can please click you here. Once the support document opens, please select your operating system and follow the instructions to set up your wireless network.

    Once the wireless is configured on your printer, you check simply that your iPad is connected to the same network that your printer is connected to the and which will allow your printer to print from your iPad.

    If the wireless configuration is always a failure, due to the network, the other alternative would be to use Direct wireless.

    Step 3: Direct Wireless Configuration:

    Direct Wireless will allow you to print wireless from your printer without having to connect to a network. Enable you wireless directly on your printer. By doing so, your printer will now broadcast its own network name. At this point up to 5 computers, tablets, phones can connect to the network printers and can print directly to the printer. However, you will not be able to access the internet on your iPad and print on your printer at the same time as your iPad has only 1 card network which will be connected directly to the printer.

    If you want to use Direct wireless, you must install a print on your iPad application. Please click here for the application.

    After loading the application, touch button Wireless directly on your printer is able to walk. Once the Direct wireless is enabled on your iPad select to connect to a new network. Under the list of available networks, you will see your HP Deskjet. To connect to this network, and now you'll be able to print. Yet once, this function will not work unless you are connected to the network printers which means that you are not able to go on the internet at the same time.

    This is the button wireless directly on your device:

    Unfortunately, printing on large networks, as this university network, is almost impossible because the school most likely won't be unwilling to give to your permissions to print to the network printer.

    Please reply to this message with the result of your troubleshooting. Good luck!

  • Using Logitech attack 3 joystick, some button do not work or work properly. Do need to be configured.

    Installed Flight Sim X - also downloaded the drivers for the controller Logitec. Components and fittings are directional. for example, I can extend components but does not retract them. I can cut the nose upwards but not downwards. Does anyone have short suggestions to get a different joystick. FSINSIDER lists it is a recommended.

    Hi jmcaruso53,


     
    Welcome to Microsoft Answers Forums.

    We would like to get some more information from you to help solve your problem.  You better, please answer the following questions.

    When was the last time it was working fine?

    You have installed the drivers available for joystick from Logitech Web site?

    You will have to perhaps install the drivers for the broom handle, see the link below to download the drivers from the Web from Logitech website and make sure that you select the correct version of windows before you download the drivers.

    http://www.Logitech.com/index.cfm/441/302&CL=us, en & hub = 1? selectedcrid = 441 & selectedcid = 302

    Suggest you to check if the controller is configured in the "game controllers".

    Open game controllers by clicking the Start button, click Control Panel, click hardware, click on game controllers, and then check if the joystick is configured to be used as a gaming device.

    http://windowshelp.Microsoft.com/Windows/en-us/help/6065f372-90DD-44cd-BC8D-c89d17f0fdfd1033.mspx

    You may need to check the settings les parametres joystick, please see the link below.

    http://www.fsinsider.com/product/learning/pages/default.aspx

    Hope this information is useful.

    Let me know if it worked.

    All the best!

    Thank you, and in what concerns:

    Halima S - Microsoft technical support.

    Visit our Microsoft answers feedback Forum and let us know what you think.

Maybe you are looking for

  • HP Officejet 6500 a more impossible to connect to the server

    My HP Officejet 6500 a more printer was connected to my wireless network and was attached to the ePrint service; and I had an email address to send prints to my printer. But today, when I go to the ePrint, it shows that my printer is NOT connected to

  • Satellite L305 does not load

    Satellite L305. Although at 4 years old, my battery is in good shape. But just started not to load while using the laptop. The icon shows connected and reduced the charge, but the percentage of left. When turned off and power left connected, the batt

  • Why do I all of a sudden the disturbing message: "Do view you the contents of the Web page which was delivered safely?" etc. "

    What happens here?  At the opening of some of my programs I suddely the message: "Have you added to viiew only the webpage content that was delivered safely?". I thought that using the protocol HTTPS is safe for all it's content. What must I do tget

  • -Pop-up notifications (mobile data and system update)

    Hello.I am having some problems with the pop-up notifications. I'm on a prepaid monthly plan and sometimes my mobile data is not 'free' which means that I have fresh when I turn it on. Before I had a pop-up notification whenever I try to enable mobil

  • Windows Defender has stopped working properly

    When I turn on my laptop it user interface say that windows defender has stopped working properly, can not open windows defender to look at settings etc and since it has stopped working the computer guard stopping self to protect self, someone at - i