The Local Zoo - Cisco Troubleshooting and Configuration |
|
SSH to PIX Outside Interface Pix firewalls are wonderful things, if you treat them right! I've often found myself wanting to be able to configure a PIX remotely, over the internet, but whenever I've tried to enable telnet to the outside interface, it hasn't worked. It turns out that this is because PIX OS doesn't support telnet on the outside interface (a pretty good thing security wise). After much trawling around, I found this page, which gives clear and concise instructions on how to configure your pix to support SSH to the outside interface. This page also describes the process, and goes into slightly better detail with the screen shots. This has made my life much easier already! Just remember, if possible, tie down the IP addresses permitted to SSH to your outside interface to a minimum, and ALWAYS stealth the IP of the outside interface! The Local Zoo - Home Cisco Tips and Tricks |