Cisco PIX Device Manager Installation Guide Version 3.0
Total Page:16
File Type:pdf, Size:1020Kb
Cisco PIX Device Manager Installation Guide Version 3.0 Corporate Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408 526-4000 800 553-NETS (6387) Fax: 408 526-4100 Text Part Number: 78-15483-01 THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. ALL STATEMENTS, INFORMATION, AND RECOMMENDATIONS IN THIS MANUAL ARE BELIEVED TO BE ACCURATE BUT ARE PRESENTED WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED. USERS MUST TAKE FULL RESPONSIBILITY FOR THEIR APPLICATION OF ANY PRODUCTS. THE SOFTWARE LICENSE AND LIMITED WARRANTY FOR THE ACCOMPANYING PRODUCT ARE SET FORTH IN THE INFORMATION PACKET THAT SHIPPED WITH THE PRODUCT AND ARE INCORPORATED HEREIN BY THIS REFERENCE. IF YOU ARE UNABLE TO LOCATE THE SOFTWARE LICENSE OR LIMITED WARRANTY, CONTACT YOUR CISCO REPRESENTATIVE FOR A COPY. The Cisco implementation of TCP header compression is an adaptation of a program developed by the University of California, Berkeley (UCB) as part of UCB’s public domain version of the UNIX operating system. All rights reserved. Copyright © 1981, Regents of the University of California. NOTWITHSTANDING ANY OTHER WARRANTY HEREIN, ALL DOCUMENT FILES AND SOFTWARE OF THESE SUPPLIERS ARE PROVIDED “AS IS” WITH ALL FAULTS. CISCO AND THE ABOVE-NAMED SUPPLIERS DISCLAIM ALL WARRANTIES, EXPRESSED OR IMPLIED, INCLUDING, WITHOUT LIMITATION, THOSE OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OR ARISING FROM A COURSE OF DEALING, USAGE, OR TRADE PRACTICE. IN NO EVENT SHALL CISCO OR ITS SUPPLIERS BE LIABLE FOR ANY INDIRECT, SPECIAL, CONSEQUENTIAL, OR INCIDENTAL DAMAGES, INCLUDING, WITHOUT LIMITATION, LOST PROFITS OR LOSS OR DAMAGE TO DATA ARISING OUT OF THE USE OR INABILITY TO USE THIS MANUAL, EVEN IF CISCO OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES This document is to be used in conjunction with the appropriate documentation for your Cisco PIX Firewall system. CCIP, CCSP, the Cisco Arrow logo, the Cisco Powered Network mark, Cisco Unity, Follow Me Browsing, FormShare, and StackWise are trademarks of Cisco Systems, In Changing the Way We Work, Live, Play, and Learn, and iQuick Study are service marks of Cisco Systems, Inc.; and Aironet, ASIST, BPX, Catalyst, CCDA, CCDP, CCIE, CC CCNP, Cisco, the Cisco Certified Internetwork Expert logo, Cisco IOS, the Cisco IOS logo, Cisco Press, Cisco Systems, Cisco Systems Capital, the Cisco Systems logo, Empowering the Internet Generation, Enterprise/Solver, EtherChannel, EtherSwitch, Fast Step, GigaStack, Internet Quotient, IOS, IP/TV, iQ Expertise, the iQ logo, iQ Net Readiness Scorecard, LightStream, MGX, MICA, the Networkers logo, Networking Academy, Network Registrar, Packet, PIX, Post-Routing, Pre-Routing, RateMUX, Regi ScriptShare, SlideCast, SMARTnet, StrataView Plus, Stratm, SwitchProbe, TeleRouter, The Fastest Way to Increase Your Internet Quotient, TransPath, and VCO are regist trademarks of Cisco Systems, Inc. and/or its affiliates in the U.S. and certain other countries. All other trademarks mentioned in this document or Web site are the property of their respective owners. The use of the word partner does not imply a partnership relations between Cisco and any other company. (0304R) Cisco PIX Device Manager Installation Guide Copyright © 2003 Cisco Systems, Inc. All rights reserved. CONTENTS Preface vii Document Objectives vii Audience vii Installation Warning viii Safety Warning Description ix Document Organization xiii Document Conventions xiii Terms and Acronyms xiv Related Documentation xv Obtaining Documentation xv Cisco.com xv Documentation CD-ROM xv Ordering Documentation xv Documentation Feedback xvi Obtaining Technical Assistance xvi Cisco TAC Website xvi Opening a TAC Case xvi TAC Case Priority Definitions xvii Obtaining Additional Publications and Information xvii Overview 1 - 1 Introduction 1 - 1 Data Encryption Overview 1 - 2 PIX Firewall System Requirements 1 - 4 PIX Firewall System Interoperability with PDM 1 - 4 Flash Memory Requirements 1 - 5 Maximum Configuration File Size 1 - 5 Software Requirements 1 - 6 Upgrading to a New Software Release 1 - 6 PC/Workstation Requirements 1 - 6 Supported Platforms 1 - 8 Windows 1 - 8 Sun Solaris 1 - 9 Red Hat Linux 1 - 9 Cisco PIX Device Manager Installation Guide, Version 3.0 78-15483-01 iii Contents Preparing to Install PDM 2 - 1 Notes and Cautions 2 - 1 Caution 2 - 2 Installation Checklist 2 - 2 Preparing to Install PDM 2 - 3 Determining the IP Address of Your Server 2 - 4 Windows NT, Windows 2000, or Windows XP 2 - 4 Windows 98 or Windows ME 2 - 4 Sun Solaris 2 - 5 Linux 2 - 5 Installing PDM 3 - 1 Downloading the PDM Software 3 - 1 Downloading PDM from Cisco.com 3 - 1 Downloading PDM Using FTP 3 - 2 Installing PDM 3 - 2 Loading the PDM Image 3 - 4 Configuring PDM 4 - 1 Starting PDM with Internet Explorer 4 - 1 Starting PDM with Netscape Navigator 4 - 2 PDM Home Page 4 - 3 Using the PDM Startup Wizard 4 - 4 VPN Wizard 4 - 5 Site-to-Site VPN 4 - 5 Remote Access VPN 4 - 5 Select Interface 4 - 6 Configuring VPN Tunnels 4 - 6 Configuration Recommendations 4 - 6 Tips and Troubleshooting 5 - 1 Checking Your Connection to the PIX Firewall 5 - 1 Tips on Using PDM 5 - 2 Troubleshooting 5 - 3 Using a TFTP Server A - 1 Obtaining a Windows TFTP Server A - 1 Enabling UNIX TFTP Support A - 2 Enabling TFTP Access on a Sun Solaris System A - 2 Cisco PIX Device Manager Installation Guide, Version 3.0 iv 78-15483-01 Contents Enabling TFTP Access on a Linux System A - 2 TFTP Download Error Codes A - 3 I NDEX Cisco PIX Device Manager Installation Guide, Version 3.0 78-15483-01 v Contents Cisco PIX Device Manager Installation Guide, Version 3.0 vi 78-15483-01 Preface This preface includes the following sections: • Document Objectives, page vii • Audience, page vii • Installation Warning, page viii • Installation Warning, page viii • Document Organization, page xiii • Document Conventions, page xiii • Terms and Acronyms, page xiv • Related Documentation, page xv • Obtaining Documentation, page xv • Obtaining Technical Assistance, page xvi • Obtaining Additional Publications and Information, page xvii Document Objectives This guide describes how to install and access the Cisco PIX Device Manager (PDM) software. Audience This guide is for network administrators who perform the following: • Manage network security • Install and configure firewalls Cisco PIX Device Manager Installation Guide 78-15483-01 vii Preface Installation Warning Installation Warning Warning Only trained and qualified personnel should be allowed to install, replace, or service this equipment. Waarschuwing Deze apparatuur mag alleen worden geïnstalleerd, vervangen of hersteld door bevoegd geschoold personeel. Varoitus Tämän laitteen saa asentaa, vaihtaa tai huoltaa ainoastaan koulutettu ja laitteen tunteva henkilökunta. Attention Il est vivement recommandé de confier l'installation, le remplacement et la maintenance de ces équipements à des personnels qualifiés et expérimentés. Warnung Das Installieren, Ersetzen oder Bedienen dieser Ausrüstung sollte nur geschultem, qualifiziertem Personal gestattet werden. Figyelem! A berendezést csak szakképzett személyek helyezhetik üzembe, cserélhetik és tarthatják karban. Avvertenza Questo apparato può essere installato, sostituito o mantenuto unicamente da un personale competente. Advarsel Bare opplært og kvalifisert personell skal foreta installasjoner, utskiftninger eller service på dette utstyret. Aviso Apenas pessoal treinado e qualificado deve ser autorizado a instalar, substituir ou fazer a revisão deste equipamento. ¡Advertencia! Solamente el personal calificado debe instalar, reemplazar o utilizar este equipo. Varning! Endast utbildad och kvalificerad personal bör få tillåtelse att installera, byta ut eller reparera denna utrustning. Cisco PIX Device Manager Installation Guide viii 78-15483-01 Preface Safety Warning Description Safety Warning Description Warning IMPORTANT SAFETY INSTRUCTIONS This warning symbol means danger. You are in a situation that could cause bodily injury. Before you work on any equipment, be aware of the hazards involved with electrical circuitry and be familiar with standard practices for preventing accidents. To see translations of the warnings that appear in this publication, refer to the translated safety warnings that accompanied this device. Note: SAVE THESE INSTRUCTIONS Note: This documentation is to be used in conjunction with the specific product installation guide that shipped with the product. Please refer to the Installation Guide, Configuration Guide, or other enclosed additional documentation for further details. Waarschuwing BELANGRIJKE VEILIGHEIDSINSTRUCTIES Dit waarschuwingssymbool betekent gevaar. U verkeert in een situatie die lichamelijk letsel kan veroorzaken. Voordat u aan enige apparatuur gaat werken, dient u zich bewust te zijn van de bij elektrische schakelingen betrokken risico's en dient u op de hoogte te zijn van de standaard praktijken om ongelukken te voorkomen. Voor een vertaling van de waarschuwingen die in deze publicatie verschijnen, dient u de vertaalde veiligheidswaarschuwingen te raadplegen die bij dit apparaat worden geleverd. Opmerking BEWAAR DEZE INSTRUCTIES. Opmerking Deze documentatie dient gebruikt te worden in combinatie met de installatiehandleiding voor het specifieke product die bij het product wordt geleverd. Raadpleeg de installatiehandleiding, configuratiehandleiding of andere verdere ingesloten documentatie voor meer informatie.