
PIX Version 6.3(5)
4 S2 ]) _: ], [" i5 S$ Winterface ethernet0 auto2 B! p% N8 b$ f
interface ethernet1 auto1 u+ p5 b x2 L9 Y" b
nameif ethernet0 outside security0
; G' m* ^/ q8 V- Hnameif ethernet1 inside security100) l- r) |- m2 J/ ~2 C' V9 {# k
enable password bC9eqE.KH6cr1L6d encrypted
- N2 \; D3 [7 X! }passwd bC9eqE.KH6cr1L6d encrypted
$ I, J E# `5 Fhostname xzzx: @$ S9 x# |. K. A! t
fixup protocol dns maximum-length 512; ~3 X3 y: _1 C; P) M
fixup protocol ftp 21
) v6 p8 E N7 U+ Qfixup protocol h323 h225 1720
# [# j0 R* v I" p/ u; Vfixup protocol h323 ras 1718-1719$ ~) I y3 i. ]7 Q1 w! H$ d
fixup protocol http 80& \; R# q9 h+ n4 r: ~
fixup protocol rsh 514
; X' v6 C+ k d, \& Y( o! ifixup protocol rtsp 554# T$ P. y& [' {/ x% x- j
fixup protocol sip 5060" \7 u) C! o. b4 s7 J' D# g- }7 H# G; `
fixup protocol sip udp 5060+ l* p0 T ^: A/ W8 x3 O ^( P( z! @
fixup protocol skinny 2000
, v$ n, o7 y$ n7 R) X8 X& V! Q) mfixup protocol smtp 253 v$ B/ s* P% F
fixup protocol sqlnet 1521' s. u$ O9 n$ W% _2 Y" J
fixup protocol tftp 69& g$ ~; k r6 e) p
names$ E0 k5 k7 D: J5 o' C8 r
# ^* c% q/ d* c7 ^! zaccess-list 130 deny udp any any eq 1434 " G+ T$ w, T* h3 J) G2 y4 H# o
access-list 130 deny ip host 192.168.91.9 any
7 ^" H( p: R( F! a' O7 kaccess-list 130 deny ip host 192.168.91.10 any
5 }( f4 ?' P# K- L, x) saccess-list 130 deny ip host 192.168.91.11 any
; {8 V4 t( X, F- ^5 Z# `* g+ Caccess-list 130 deny ip host 192.168.91.12 any
- v8 m' X/ Q% r. l# Waccess-list 130 deny ip host 192.168.91.13 any
. X, s& E5 n& }0 |* H# taccess-list 130 deny ip host 192.168.91.14 any
2 r, S! Q1 t: j, t3 L F& U% Haccess-list 130 deny ip host 192.168.91.15 any 0 x. E- n& |& r+ Q
access-list 130 deny ip host 192.168.93.21 any 6 m1 D2 P8 L7 n$ Y4 q4 X
access-list 130 deny ip host 192.168.93.22 any - Z2 i: l. f7 t
access-list 130 deny ip host 192.168.93.23 any
+ Y" Z6 @; x- k1 S% S7 oaccess-list 130 deny ip host 192.168.93.24 any
* V4 h }' T& zaccess-list 130 deny ip host 192.168.93.25 any
9 o& v- ]6 [8 j& v7 o5 j" X7 caccess-list 130 deny ip host 192.168.93.26 any : N) `2 n) |# o, F$ H8 Y
access-list 130 deny ip host 192.168.93.27 any % v. A9 u$ U% |8 D) j; n$ p4 m V c
access-list 130 deny ip host 192.168.93.28 any ) N. R+ p$ Q, @0 h3 N& q
access-list 130 deny ip host 192.168.93.29 any ! J* C4 V, k/ ~- c8 \* h i, v
access-list 130 deny ip host 192.168.93.30 any $ | B. i9 o8 l, f( M% x B: M2 J# k4 r
access-list 130 deny ip host 192.168.93.31 any 7 s: @, c# s% L( v' T& ~2 v
access-list 130 permit ip 192.168.91.0 255.255.255.240 any , |6 c6 k" p* r: e$ G: t
access-list 130 permit ip 192.168.92.0 255.255.255.240 any ! i1 B) @7 H1 I4 @) A. h
access-list 130 permit ip 192.168.95.0 255.255.255.224 any
2 _% ^) f* K5 p( X6 h+ F/ taccess-list 130 permit ip 192.168.99.0 255.255.255.224 any
+ H$ }# [8 {7 G* taccess-list 130 permit ip 192.168.100.0 255.255.255.224 any
4 h+ x5 p% o H7 ~2 Z- E0 p5 M' a
1 l& T, |1 e; z/ ]access-list 130 permit ip 192.168.93.0 255.255.255.224 any ; D3 O8 @0 l1 t; I- ]* t6 ^
pager lines 24' L5 {# O$ x, P. T, z
mtu outside 1500. W: F" G& X) l
mtu inside 1500+ L# }7 v4 d* v" h5 Q
ip address outside ***.**.28.74 255.255.255.248: c; }. g9 q) l" V3 I
ip address inside 192.168.100.1 255.255.255.0* z0 A: ]& Z# w, a) b6 F
ip audit info action reset
$ e- l" [7 Q( e9 h% L# l2 v1 Z* {2 rip audit attack action reset4 m! f9 K, Q( N0 z4 i3 w0 I
no failover
6 k+ R3 [, t- F7 {# lfailover timeout 0:00:00
, m- b1 V. Y D8 X7 H1 `2 Ofailover poll 150 u% e) I) H# l* I$ g& m8 r
no failover ip address outside8 j' B" y" f& ~# z
no failover ip address inside' N- Z ^3 _* \0 u _9 m' `! [
pdm history enable+ C4 m$ I- _4 o$ x
arp timeout 14400" o6 I$ {3 k! C
global (outside) 1 interface) Y, h- I- b: X p% R5 o
nat (inside) 1 0.0.0.0 0.0.0.0 0 0
+ Z& d3 S- ~8 v8 o9 }: Z1 l: |+ jstatic (inside,outside) tcp ***.**.28.76 www 192.168.99.9 www netmask 255.255.255.255 0 0 . }, H% Q) N( ]/ A: C0 Z% |
) V# V4 u8 G3 J. ], oaccess-group 130 in interface inside
z) |* ^1 H6 Zconduit permit icmp any any
4 i0 }$ o5 P4 mconduit permit tcp host ***.**.28.76 eq www any / |* ?# t: o- X a. |4 f6 r
+ J/ p6 D& `6 n0 oroute outside 0.0.0.0 0.0.0.0 ***.**.28.73 1
2 s' C( G, ?# p' [route inside 0.0.0.0 0.0.0.0 192.168.100.2 2 |
|