Help to port forwarding

I recently installed an ASA5510. I need to pass certain internet traffic entering a few internal as servers below:

These 3 are already configured with NAT and security policy via ASDM.

TCP-smtp of 66.66.66.66 traffic goes to 192.168.1.16

TCP-http 66.66.66.66 traffic goes to 192.168.1.16

TCP-https 66.66.66.66 traffic goes to 192.168.1.16

However, I'm not sure how to do the following, as it does not overlap the 192.168.1.x subnet:

the TCP-pptp 66.66.66.66 traffic goes to 192.168.1.10

Gre47-IP of 66.66.66.66 goes to 192.168.1.10

where 66.66.66.66 is part of our external subnet.

static (inside, outside) 66.66.66.133 tcp smtp 192.168.1.16 smtp netmask 255.255.255.255

static (inside, outside) tcp 66.66.66.133 192.168.1.10 pptp pptp netmask 255.255.255.255

list of extended outside access permit tcp any host 66.66.66.133 eq smtp

list of extended outside access permit tcp any host 66.66.66.133 eq pptp

outside access-group in external interface

clear xlate

It should work how you got it.

Tags: Cisco Security

Similar Questions

  • Need help with the port forwarding for a XBox remote Streaming

    I have a router R6200v2 and need help with port forwarding.

    I came across this set of instructions for setting up stream port forwarding XBox remotely from anywhere

    http://kinkeadtech.com/2015/07/how-to-stream-Xbox-one-to-Windows-10-from-anywhere-with-Internet/

    I have no idea when it comes to such things and I want to make sure I do it correctly without messing up my existing home network.

    Port Forwarding and triggering Port pages setup look very different from what the guy uses. Can someone walk me through what I do to set up please?

    Hi @varxtis,

    You must enter them in the field for a start external Port and external completion Port. You will need to send individually except for the range of 49000-65000. The steps are as follows.

    1. create a Service name (it could be something else that you cannot use the same service name twice. Ex. XBOX1, XBOX2 and so forth.)

    2. Select the type of service (TCP, UDP or both)

    3 entry 5050 times a start external Port and external endpoints.

    4. Select the IP address of your XBOX.

    5. Select apply.

    6 do the same for other port numbers. To the beach, use 49000 for the external departure Port and for the external completion Port 65000.

    Kind regards

    Dexter

    The community team

  • Problem with Port Forwarding (When PPTP is upward) in the WRT-160N

    Hello world!

    I'm looking for more help with Port Forwarding in my new Linksys router. I bought the daysago afew router and was pretty surprised when I discovered that there is no DD - WRT firmware is installed in it (the router was 100% NEW when I bought it). I downloaded latest firmware original and flashed Linksys file successfully.

    But I still have the problem (even that I was on DD - WRT firmware too) with the port forwarding for my DC ++ and Vuze (app from torrents): I wrote port forward for ports 49151 (for Vuze) and 4000 (for DC ++) to pass on to my desktop computer (IP 192.168.1.201) - I saw a post on this forum, that there could be a problem If you transfer to an IP address, which is within the local area of DHCP, so I forwarded to IP.201 (my local DHCPzone is 192.168.1.100-. 149) But does not forwardind (())

    What's wrong?

    My configuration:

    Router IP: 192.168.1.1

    PPTP (I my ISP)

    IP address: 192.168.226.127

    Default gateway: 192.168.226.2

    DNS 1: 192.168.1.1

    2 & 3 DNS: 0.0.0.0

    The IP address of the PPTP server: 192.168.226.2

    User name: *.

    Password: *.

    _____________________

    Simple Port Forwarding:

    Name of the external port application port internal protocol for IP address Enabled

    Vuze 49151 49151 times checked 192.168.1.201

    DC 4000 4000 checked two 192.168.1.201

    As you mentioned in your post that your ISP has provided you with a PPTP connection with an IP address: 192.x.x.x. The IP address that is provided by your ISP is in a private beach, and if you try to transfer all the ports on your router, it will not work, as long as your ISP modem is blocking this port. If you need get a public IP address from your ISP.

    As you get Private IP of your ISP, if this connection is called as NAT behind NAT and your Modem behaves like a router.

    So now you have 2 options, get the public IP address from your ISP or change the type of connection.

  • Help for my new E2500 router port forwarding

    My hosting web home used to work. But due to new ISP from Verizon to TWC, TWC gave me a modem-router and I bought my own router Linksys E2500. Verizon and services of TWC, that I subscribed are dynamic IP address. I use a third party to redirect web traffic to my house.

    TWC gave me a simple modem-router in one box. An entry is coaxial and outputs are 4 ethernet ports. I use one of the 4 outputs of the TWC ethernet box to connect to the internet the E2500 input ethernet port. All my sons and wireless devices are now feeding the E2500. All wireless and wireline devices works and can surf the internet through the E2500.

    I have assigned to one computer as the web server and the internal IP Address of this computer as 192.168.1.128 addess. The same goes for the installer with Verizon before.

    I loaded him comes from CD with the router E2500 and see the LAN 192.168.1.128.

    My problem starts from there, I do not know how to set the port in E2500 192.168.1.128 to web traffic

    1. using the CD E2500, I click on 'APPLICATION AND GAMES', then 'SIMPLE PORT FORWARDING'. under the NAME of the APPLICATION, I select one box for HTTP and type in 128 under "IP ADDRESS". I then click on ACTIVE, then 'save settings '. The 192.168.1 is set in this window, I can type only 128.

    It does not work. I can browse the internet, but can not access my site of all machines using domain name.

    Then I tried:

    2 to point 1 above, I continued to Setup > BASIC SETUP > DHCP RESEVERSATION. I can see the name of calculation/sever and the 192.168.1.128. Then, I click on the "select" and save the customer.

    I rebooted the computer/server, I disconnect and reconnect power E2500. I check the internal IP address of the server, and it's always the same. But I can't just browse my site. I can browse other places.

    No idea what's wrong on my fault? Help, please.

    Your modem is a router. All incoming internet requests end up on the modem/router. You must configure the port forwarding on the modem/router first before the E2500 will see nothing incoming from the internet.

    Alternatives:

    1. turn the modem/router mode 'bridge', which turns into a simple modem. You can connect directly to the internet with your E2500.

    2. place the E2500 as simple access point and keep the modem/router as your main and single router. Then any transmission is made on the modem/router.

  • Port forwarding works not, help

    I have a string of teracom TCW120B controller and I want to remote control. Those of teracom gave me the following response to configure the router:

    "Is there a router between the controller and the device? If there is a router, it should do the port forwarding.
    http://212.25.45.120:81 /.
    http://212.25.45.120:82 /.

    These two devices are in our office. I have forwarded port 81 of our router (with the real IP 212.25.45.120) to port 80 (http protocol) to the ip address of the first unit.
    The 82 port is forwarded to port 80 on the ip address of the second device. »

    I can not I put the lan router you can order Remote control TCW120B.
    Please help me with this problem.

    Ignore the Wi - Fi Protected Setup button if your wireless network is already reached.

  • Help to port RV042 forwarding

    Hi and thanks for reading this. My VPN router works well but I just need to make sure that port 8443 is forwarded so that my customers from outside my office/domain can access my Web server to generate reports. I have already connected to my router and entered my IP address of the web server with the port enabled in the port forwarding section range. It is said: secondary https [tcp/8443 ~ 8443]-> 192.168.xx.x

    It is activated and I saved the day. Everyone in my office and the server can display this site very well but can my clients outdoors. What gives? I really try hard to understand but I have developed with nothing. Any help is greatly appreciated.

    Hi niospecv and welcome to the homepage of Cisco community!

    The RV042 now reports to the Cisco Small Business Support Community.

    For discussions concerning this product, please go here.

  • Port forwarding on the SA520W - Help!

    Hey guys! I need help :)

    We have a SA520W and I can not port forwarding to work.

    I want to say I'm not a computer scientist, even though I know a bit :)

    I have a server running on our network that hosts our inventory software.
    Works completely very well locally. I can hit using the name of the computer. Server
    Firewall is not a problem.

    I need that people in our warehouse (building/separate network) to
    access to this server.

    How would I set up so go directly to port 12345 (for example)
    the local IP address of my server?

    I hope someone can help :)

    Thank you!

    Hello

    IM typing this on mobile, so my editing options are limited, but here's what you need to do:

    1. download the following file:

    http://www.Cisco.com/c/dam/en/us/TD/docs/security/multi_function_securit...

    2. create a new personalized Service for the port that you need. Watch the guide you just download page 104. Repeat for all required ports.

    3. then set up the rule for inbound traffic. See page 110 on the guide for this information. Make sure you select WAN by virtue 'Of Interface' and LAN "interface", then select the personalized service, you created and pointed to the ip address of your internal server.

    I hope this has been helpful

  • Need help with the implementation of a VPN to bypass the port forwarding to access my web server

    Pretty much as the title suggests, but it's probably not clear enough. Let me explain:
    I want to host a Web site on my computer. Not another major, but something small and private.

    Before you set up a domain name, I want to make sure the site works - which it is not.
    I am currently using WAMPServer to organize it all.

    I put it so when I connect to localhost, I have access to all my files in the directory, regardless of whether or not I'm "online" or "offline" on WAMPServer (or not, others will have access to my Web page).

    When I turn WAMPServer 'on-line', it allows the connection of my WAMPServer homepage through both localhost and connection through the static IP address, I put in place, but only in LAN, meaning that only computers connected to my home network would have access to the page.

    My router cannot be configured to allow port forwarding for can I open a port to allow redirection to my computer, rather than the ambiguous router itself. As an alternative, I downloaded Hamachi to allow a computer to connect to the VPN (Hamachi) and, by extension, my IP for access to files in the directory.

    In theory, it should work, but it didn't. In my local network computers could still connect to the IP address, but the computer in the virtual private network, but not on the local network could not.

    Is there something I'm missing here, or is there any suggestions to make this work?

    Note:
    My works of static IP as what it is, however, it is different from the IP address used in Hamachi. If I change the IP address used by my computer to access the site to the IP address that uses my Hamachi, would that work? As another suggestion, can I change my static IP setting is automatic and change one used on WAMPServer (from localhost, allowing the connection to bring) than on Hamachi? Or I do all three IP addresses the same?

    Thanks for all the help and solutions,
    Elgo

    Domain/server/business questions are best addressed @ Technet.  Answers is more connected consumer.

    http://social.technet.Microsoft.com/forums/en-us/categories/

  • How do I port forward on apple airport? (READ ALL)

    I have an airport express from apple connected to an asus router via wifi and I need to know how I can portforward by airport to the router because my pc is connected by ethernet to the airport. Help, please.

    The express should be none not routing at all and therefore no port forwarding.

    The only way this can work is the express installation to the wireless bridge... Apple called client mode... There is no routing.

    BUT it can also have port problems... It is really unsuitable if you operate in questions.

    In any case all the transfer is possible on the Asus.

  • Port forwarding rules missing WNR1000V3

    I read a few posts here that may be similar, but they are so old, that threads are blocked. I'm trying to help out a local company add some rules to redirect to their server port WNR1000V3 more.

    They must have some configuration of port forwarding already because they are able to access an existing via RDP server so there is a rule somewhere for port 3389. However, it is has nothing listed in respect of port forwarding.

    My view on it after scratching my head for several hours, it's that there is either a port forwarding rules defined and running, but they are not displayed in the user interface, OR there is some screen that I have not found (was all!) where port forwarding is also configured.

    I think it's the first because there is no rule for the listed FTP, but if I try to add a new FTP rule, it displays a "conflict of Port with other services".

    Firmware is V1.0.2.62_60.0.87 although the router points out that there is an update.

    There is a known issue like this with this model? It seems a few years old.

    Thank you, Rob.

    Sorry, I would have given an update on that. I am aware of what means the error and it was probably that a rule on this port unless it was not displayed. I hoped that export Netgear configuration could be a human readable script (found on the Cisco routers), but it's not.

    After discussion about ServerFault and checking some of the suggestions there, it became clear that something was broken enough with the router. An update does not solve so I have taken note of all the settings and did a reset.

    That solved the problem. My theory is that some bugs in an earlier version of the firmware caused a bad record in order to be there for port forwarding. One that actually worked, but could not be displayed.

    Cheers, Rob.

  • NETGEAR ProSafe VPN Firewall SRXN3205 and port forwarding?

    Hi, this is a long shot, but I'm pulling my hair out at this point and can be a bit over my head, as I am new on network

    Small short story, I have two servers, one is the NAS box (IE if I connect via the internet to the site via public IP network from home, I get it that site says 'my actions' I insert login and pass and get access to them.)
    That is, everything is peachy.
    The problem is when I try to connect to my FileMaker Server I'm not and instead, he takes me to the login NAS box. So I think ok, I need to port forward (5003 for filemaker) to go to different PC local LAN(192. etc)

    Security > firewall > Add Service entering:
    Service: fmserver
    Action: Always leave
    Send to LAN Server: unique address 192. etc is filemaker installed on (and different on a NAS)
    Definition of Port number: 5003<-- is="" this="" right?="" how="" else="" would="" you="" indicate="" you="" want="" all="" connections="" on="" this="" port="" to="" go="" to="" this="" specific="" lan="" machine="" from="" internet="" instead="" of="" default="" which="" seems="" to="" be="">
    rest is default, I click on apply.

    Here's what I don't understand. In the table of incoming Services, (security > firewall) I have two local IP in the list, a SIN, the other for Filemaker. But only the top works and can be connected to. I can move every top position and it will work, but they will not work at the same time, just the one that sits on the top of the sad Smiley page

    and yes I read the manual again and again and don't know how I'm screwing up the port forwarding on this point, even if I am brand new to probably something stupid Smiley Happy (our work IT guy is gone so tried to get involved through this somehow)

    Any help would be appreciated.

    Hello sinieq,

    There is a hierarchy on incoming service table, which is normal. I see 4 services added using "ANY" (ALL use any port number) you will need to remove/disable these because of the rule of the hierarchy on the table, all other services will be ignored when EVERYTHING is used. What is the port number used by the NAS Server? I don't see a port defined to access NAS. Try disabling services by using "ANY" and try again by adding the translation to the port number of the NAS.

    Let us know what happens.

    Thank you

  • Implementation of IPSec Port Forwarding on a Windows 2012 with a LRT224 Server

    Hi all I hope someone can help me validate my troubleshooting. I'm deploying a Server Windows 2012 that will server as a server vpn for customers. In place is a LRT224 with 4 VLANS set up. I have enabled port forwarding for IPSec (UDP/500), L2TP (UDP/1701) and L2TP (UDP/4500) to go on the server.

    In my Initial test, I put the LRT224 on the same network as the client of my test and realized the Test Client (10 Windows) to try to connect to the WAN of the LRT224 interface. I get this message:

    Thinking it could be the configuration of the server, I then put the client system on the same vlan on the LRT224 server. When I tried to connect to it directly by using the IP address of the server as a destination, he succeeded.  It is leading me to believe that it is the LRT224.

    I confirmed that VPN passthrough is enabled.

    The firmware version is by: v1.0.5.03 (February 22, 2016 10:12:17)

    Currently, the firewall is disabled (I would activate once I'm working)

    If anyone has ideas or notice a fault in my tests, I would really appreciate the feedback.

    If additional information would be useful, please let me know what you want and I can work for it.

    Thanks to all in advance.

    FreeFallFour wrote:

    I then put the client system on the same vlan on the LRT224 server. When I tried to connect to it directly by using the IP address of the server as a destination, he succeeded.  It is leading me to believe that it is the LRT224.

    It does normally not as I KNOW because the VPN in an outside in the process. You should test the VPN connection outside the server's IP subnet.

    You have the server configuration that the DNS server in the router to DHCP with DNS Proxy is disabled?

    Are you doing load balancing Internet connection?

  • LRT214 Port Forwarding does not

    First of all, when you create a service in the port forwarding section, why to select the two TCP/UDP has been omitted from the selection must be embarrassing for Linksys.  Creation of 2 services, one for the other for UDP and TCP are bad design.  Would love to see that this problem has been corrected in future updates of the firmware.

    The main problem is I have configured port forwarding services, but I can't get anything to work.  I am able to access remotely to the router using the port 1443 that is configured in a separate section.  I worked in the network design and mgmt for 10 years and why Linksys decided to make the management for the LRT214 so different interface, then the rest of the market was a bad decision.  Is there anything else you can suggest to help out why these ports cannot be opened through the FW?

    On this router logs show nothing.  There is no log for blocked inbound connections and there is a class router business?

    After setting up some boxes of Windows on the local network, then transfer to a custom RDP listening port, I am able to RDP in these Windows boxes remotely.  It verifies that the Linksys router is forwarding ports correctly.  The question then is something on the Synology device itself.  Thanks for your response!

  • Unable to get the port forwarding on LRT224

    Hello

    Can anyone help with setting the port forwarding on a LRT224 - he drives me crazy!

    I have a mail server running on the internal network listening on port 443 using SSL. I want to expose it to the internet on port 450

    I tried to configure the following Port Address Translation entries:

    TCP: 450 an external Port internal Port: 443 host LAN:

    UDP: 450 an external Port internal Port: 443 host LAN:

    The two rules are enabled.

    I have not setup additional access rules, since I realized that the Port Address Translation is circumventing them.

    The setting "Block WAN request" on the firewall is disabled.

    Result - NOTHING! No link, no ports open (verified with ShieldsUp!)

    FYI - the LRT224 was purchased to replace 2 DD-WRT-flashed routers, each connected to a different ISP - 1 want to automate failover rather that physically Exchange connections of my passage to the routers.

    On the other hand, the requirement for transmission of port above took 5 minutes to the configuration via DD - WRT and worked as required from the beginning.

    I spent 2 days playing with the LRT224 and have no configuration work.

    It is a basic feature! Why is it so hard to make it work?

    All help gratefully received...

    Hi Chad,

    Just to say thank you to help get that job!

    To confirm, the resolution for anyone interested:

    The configuration of Port Address Translation was correct, but the internal server that was targeted had bad default gateway on its network card (it was targeting my other router), which meant that he was not talking to the LRT224, which means that the latter did not open the ports connected to the Internet.

  • EA7500 Port Forwarding disorder

    Hello

    I'm having a problem involving using the port forwarding on my new LInksys EA7500 router.

    Everything works well, it works as it should locally, with my Apple TV, Windows desktop and all my phones.

    But as soon as I set up a port forwarding using port 32400 "plex" and the Ip address of my SIN.

    I start getting "failed to retrieve the queue of reading for this element. Please try again ".

    This problem only when I try to use the plex locally, if I use the phone, on my 4g net, everything works as it should.

    But not locally on my LAN/WLAN.

    As soon as I remove the port forwarding, it works locally again?

    Can someone please help me if there is anything I should change?

    / Fredrik

    I think I have it solved.
    I've updated the Plex media server, rebooted, and now it seems to work.
    / Fredrik

Maybe you are looking for