ASA 5505 Simple Static/ACL Issue

Unanswered Question
Jun 18th, 2008
User Badges:

Hi all,

We have recently purchased a ASA-5505 device and in trying to get a simple Static IP Mapping (inside to Outside) and access-list configuration, the device does not seem to be allowing pre-approved (ACL) traffic?


Essentially, we have an internal server that I wish to Map to the outside Public Interface for ports 22, 25 and 8080.

I have included a Static (Inside,outside) command along with an ACL applied inbound to the Outside interface. Yet I am unable to connect to the server and the ACL counters do not register any hits.


I have attached a copy of the current config. If anyone can assist or point me in the right direction I would be most grateful..


Matthew Belmore

[email protected]



Attachment: 
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Loading.
acomiskey Wed, 06/18/2008 - 11:06
User Badges:
  • Green, 3000 points or more

Change PublicIP-Advent to "interface" in your statics.


static (inside,outside) tcp interface smtp advent.pnaa.us smtp netmask 255.255.255.255

static (inside,outside) tcp interface ssh advent.pnaa.us ssh netmask 255.255.255.255

static (inside,outside) tcp interface 8080 advent.pnaa.us 8080 netmask 255.255.255.255

mattbelmore Wed, 06/18/2008 - 13:20
User Badges:

Thank-you, your suggestion fixed the issue.


Much appreciated!


Matthew Belmore


Actions

This Discussion