« New CallManager Express Configuration GUI | Main | Ideal CCNA Lab Setup »

August 8, 2006

Bi-Directional NAT on PIX Firewalls

For those of you that work with PIX firewalls on a regular basis, you might know that when you upgrade to use the ASDM GUI, it no longer supports the alias command (kudos to the no-longer-supported alias command). The first time I saw the error message from teh ASDM GUI, it made me feel like a moron. It was something like:

"Alias commands are no longer supported in ASDM. Before you can use the configuration utility, you must convert all alias entries to bidirectional NAT."

So matter of fact...meanwhile, I'm staring at the screen thinking, "what the heck is bidirectional NAT?" A search of Cisco's website provided no useful information.

Mike Storm (a fellow instructor of mine at Interface TT in Phoenix, AZ) did a quick write-up describing what took me 6 hours to figure out. You can grab it here.

Posted by JC at August 8, 2006 6:05 PM

Trackback Pings

TrackBack URL for this entry:
http://www.cioara.org/cgi-bin/mt-tb.cgi/102

Comments

I must admit, I've recently been using ASDM at my new job, using Cisco ASA. It's nice, to an extent. I like having all the useful information in one screen, for day-to-day 30,000 foot overview statistics.

The site-to-site VPN Wizard is also very nice.

However, at times, I still prefer the CLI for most operations and lookups.

Wouldn't you agree?

~~Aaron

Posted by: Aaron Paxson at September 24, 2006 7:57 AM

Post a comment




Remember Me?

(you may use HTML tags for style)