LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 08-15-2007, 03:30 AM   #1
yongitz
Member
 
Registered: Nov 2005
Location: Davao City, Philippines
Distribution: RHEL, CentOS, Ubuntu, Mint
Posts: 139

Rep: Reputation: 20
question about cisco pix licenses


Hi folks! I know this might not fit into this category.. but if anybody can help me with this issue I'll be grateful for your responses.

We are planning to buy a new Cisco PIX 501 with a default package of 10 licenses?

What does 10 implicate? What is it for?


Thanks..

Ignore this one..
Just got the info from the cisco site.. Thanks!

Last edited by yongitz; 08-21-2007 at 10:37 PM.
 
Old 08-16-2007, 03:36 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
yeah, this is really not the right forum at all, i.e. not a Cisco forum but a Linux one... however...

We actually just got caught out by this the other day. 10 users is 10 internal arp entries. we had 12 clients in a site, some of whom had not previously used the network much. when they started to, at any given time 2 machines could not leave the site, as the arp table wouldn't add the new entries at all. ouch. upgraded to the 50 user license, and all is sweet.
 
Old 08-17-2007, 03:26 AM   #3
yongitz
Member
 
Registered: Nov 2005
Location: Davao City, Philippines
Distribution: RHEL, CentOS, Ubuntu, Mint
Posts: 139

Original Poster
Rep: Reputation: 20
Hi! Since you have replied to my thread I might as well clarify things out.. If I have say 20 machines behind a router, and the router is connected to the PIX. Will PIX know that there are multiple machines behind it or it will just recognize only the router? Thanks..
 
Old 08-17-2007, 03:58 AM   #4
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
i'd like to say that as it's on a different subnet that no, it's not going to affect it, but i really don't know. there's only one MAC address in the equation, but maybe there are other devious tricks i'm not aware of. I do know that somethign as scraweny as a 501 isn't meant to be infront of multiple routed LAN's though.

oh hang on.. just checked google. says it's the number of ip addresses on the inside interface, not mac's, so unless you're actually proxying traffic, or source natting it on the router, they would also fail past 10 (including the router itself, so you could only have 9 ip's behind the router... )

Last edited by acid_kewpie; 08-17-2007 at 03:59 AM.
 
Old 08-17-2007, 04:43 AM   #5
yongitz
Member
 
Registered: Nov 2005
Location: Davao City, Philippines
Distribution: RHEL, CentOS, Ubuntu, Mint
Posts: 139

Original Poster
Rep: Reputation: 20
Quote:
Originally Posted by acid_kewpie View Post
i'd like to say that as it's on a different subnet that no, it's not going to affect it, but i really don't know. there's only one MAC address in the equation, but maybe there are other devious tricks i'm not aware of. I do know that somethign as scraweny as a 501 isn't meant to be infront of multiple routed LAN's though.

oh hang on.. just checked google. says it's the number of ip addresses on the inside interface, not mac's, so unless you're actually proxying traffic, or source natting it on the router, they would also fail past 10 (including the router itself, so you could only have 9 ip's behind the router... )
so u mean if i am source natting, the pix would only recognize 1 ip(the ip of the router) no matter how many machines are behind it. i would really like to clarify this thing bcoz if that's the case it would ease my work and be saved from upgrading the licenses.
 
Old 08-17-2007, 08:58 AM   #6
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
i *expect* that is what would happen, i don't know for sure.
 
Old 08-17-2007, 12:06 PM   #7
yongitz
Member
 
Registered: Nov 2005
Location: Davao City, Philippines
Distribution: RHEL, CentOS, Ubuntu, Mint
Posts: 139

Original Poster
Rep: Reputation: 20
Whew! Thanks! I'd reply as soon as a I have my pix.. Thanks! You have been of helped for me many times..
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Cisco PIX to SmoothWall cmt9000 Linux - Networking 1 09-08-2006 12:29 PM
Cisco PIX shipon_97 Linux - Networking 1 02-20-2006 01:57 AM
Cisco PIX 500 Series Secure Firewall (PIX-520) robertwolfe Linux - Networking 1 01-19-2006 04:37 AM
Cisco PIX and fwlogwatch zuessh Linux - Security 1 10-19-2005 05:16 PM
Mrtg+Cisco PIX pudhiyavan Linux - Networking 4 04-11-2005 02:58 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 08:26 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration