06-01-2012 12:26 PM - edited 02-21-2020 04:39 AM
hello all, I have a server on my network that I would like use through the asa. example inside ip address 192.168.2.x
port 20,333,555,999 outside ip address 216.235.122.x. I searched the internet and did not find commands for it. I would like to call
the server cars server. Please help.
06-01-2012 01:15 PM
Hi,
You would need this configuration:
static (inside,outside) tcp 216.235.122.x. 20 192.168.2.x 20
static (inside,outside) tcp 216.235.122.x. 333 192.168.2.x 333
static (inside,outside) tcp 216.235.122.x. 555 192.168.2.x 555
static (inside,outside) tcp 216.235.122.x. 999 192.168.2.x 999
and then open the same ports on the access-list that you have applied on the outside interface, eg:
access-list outside_access_in permit tcp any host 216.235.122.x eq 20
Here is a document for port forwarding on ASA:
http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a00804708b4.shtml
Thanks,
Varun Rao
Security Team,
Cisco TAC
06-02-2012 10:47 PM
you could also create network objects for each of the servers and then write the nat rules/access rules just to make it easier for you to review the access rules/nat rules and change them when required.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide