LI N K /A C T security appliance. Ideal for securing high-speed “always 10 0 M B P on” broadband environments, the PIX 501, part of the world-leading Cisco PIX Firewall Series, provides robust security capabilities, small office networking features, and powerful remote management capabilities in a compact, all-in-one solution: •...
Check Items Included P O W E R C O N S O L 3 .3 V 4 .5 PIX 501 Blue console cable (72-1259-01) PC terminal adapter (74-0495-01) Yellow Ethernet cable (72-1482-01) Orange Ethernet Crossover cable (72-3515-01) Power supply...
Make sure that one of the PCs has TCP/IP installed and is configured to obtain an IP address Note automatically through DHCP. Installing TCP/IP and configuring DHCP allows the PC to communicate with the PIX 501 and the Internet as well as run the PDM Startup Wizard.
Page 5
Make sure the PC interface connected to the PIX 501 inside port, numbered 1 through 4, is set to autonegotiate for best performance. If autonegotiate is not an option for the PC interface, set the speed to either 10 or 100 Mbps half duplex. Setting the interface to full duplex causes a duplex mismatch that significantly impacts the total throughput capabilities of the interface.
Configuring the PIX 501 The PIX 501 comes with a factory default configuration that meets the needs of most broadband networking environments. The factory default configuration on the PIX 501 protects your inside network from any unsolicited traffic. It is configured to use DHCP on the outside interface to acquire its IP address.
Page 7
Step 1 switched inside ports (numbered 1 through 4) on the rear panel of the PIX Firewall. Ethernet1 interface in the PIX 501 is the internal interface connecting the Note PIX Firewall to the four switched inside ports with a fixed speed of 100 Mbps full duplex.
If you are a registered user of Cisco Connection Online and would like to obtain a DES or a 3DES/AES license key, or upgrade your user license for the PIX Firewall, go to the following website: http://www.cisco.com/cgi-bin/Software/FormManager/formgenerator.pl...
Page 9
• Go to the following website if you are a registered user of Cisco Connection Online: http://www.cisco.com/cgi-bin/Software/FormManager/formgenerator.pl • Go to the following website if you are not a registered user of Cisco Connection Online: http://www.cisco.com/pcgi-bin/Software/FormManager/formgenerator.pl Obtain the serial number for your PIX Firewall by entering the show version command.
Active Host Limitation The PIX 501 supports up to 32 DHCP address leases with a 10-user license, up to 128 with an optional 50-user license, and 256 with an unlimited user license . A host is considered active when any of the following statements are true: •...
Refer to the following website for detailed command information and configuration examples: http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_sw/v_63/cmdref/index.htm The Cisco TAC website is available to all customers who need technical assistance. To access the TAC website, go to: http://www.cisco.com/tac Alternative Ways to Access the PIX 501 You can access the CLI for administration using the console port on the PIX Firewall.
For information on how to access the PIX Firewall configuration mode, refer to the “Accessing Configuration Mode” section in Chapter 1, “Getting Started” of the Cisco PIX Firewall and VPN Configuration Guide. You can also access the CLI using SSH/Telnet to the PIX Firewall. By default, SSH/Telnet access is not permitted.
Page 13
Flashing The interface is functioning at 10-Mbps half or full duplex. green With PIX Firewall Version 6.3, the PIX 501 outside interface Note (port 0) can autonegotiate to 10/100-Mbps half of full duplex, but does not provide an external LED indicating 100 Mbps operation.
Cable lock (not included) The PIX 501 includes a slot that accepts standard desktop cable locks to provide physical security for small portable equipment, such as a laptop computer. The cable lock is not included. Follow these steps to install a cable lock:...
North America, by calling 800 553-NETS (6387). Documentation Feedback You can submit comments electronically on Cisco.com. On the Cisco Documentation home page, click Feedback at the top of the page. You can send your comments in e-mail to bug-doc@cisco.com.
24 hours a day, 365 days a year. Accessing all the tools on the Cisco TAC website requires a Cisco.com user ID and password. If you have a valid service contract but do not have a login ID or password, register at this URL: http://tools.cisco.com/RPF/register/register.do...
• Cisco Press publishes a wide range of networking publications. Cisco suggests these titles for new and experienced users: Internetworking Terms and Acronyms Dictionary, Internetworking Technology Handbook, Internetworking Troubleshooting Guide, and the Internetworking Design Guide. For current Cisco Press titles and other information, go to Cisco Press online at this URL: http://www.ciscopress.com...
Page 18
You can access Packet magazine at this URL: http://www.cisco.com/go/packet • iQ Magazine is the Cisco bimonthly publication that delivers the latest information about Internet business strategies for executives. You can access iQ Magazine at this URL: http://www.cisco.com/go/iqmagazine •...
Page 20
Cisco Systems, Inc. and/or its affiliates in the U.S. and certain other countries. All other trademarks mentioned in this document or Web site are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company.
Need help?
Do you have a question about the PIX 501 and is the answer not in the manual?
Questions and answers