NAT out of Port only one

Hi all

I have a Cisco ASA 5510 and that you want to configure a NAT rule for a server, but only the traffic that matches a destination with a specific IP and Port. Is this possible?

The reason why I ask is because I have an application that requires a connection to a VPN tunnel from a specific IP address, so if I configure the outgoing NAT, all traffic then matches and results, but it breaks other applications that we have in place. I want to just present a request on a specific port to translate the IP address and then sent on the VPN connection.

Any help would be greatly appreciated! If you need more information, please let me know.

It comes from the example on the doc of Cisco to do what you want.

He has an example with a range of ports and the other with a single port. For your situation, you must create two 'NATs' single-port, one for 333 and one for 4444

object-group network og-net-src
object-network 192.168.1.0 255.255.255.0
object-network 192.168.2.0 255.255.255.0
object-group network og-net-dst
network-object 209.165.201.0 255.255.255.224
network object obj - 209.165.200.225
host 209.165.200.225
service obj_tcp_range_2001_65535 object
destination tcp service 2001 65535 range
service obj_tcp_eq_1500 object
tcp destination eq 1500 service
Dynamic destination NAT og-net-src obj - 209.165.200.225 source (indoor, outdoor)
public static og-net-dst og-net-dst service obj_tcp_range_2001_65535
obj_tcp_range_2001_65535
Dynamic destination NAT og-net-src obj - 209.165.200.225 source (indoor, outdoor)
public static og-net-dst og-net-dst service obj_tcp_eq_1500 obj_tcp_eq_1500

Tags: Cisco Security

Similar Questions

  • I'm locked out guest user (only one account on my Mac)

    I recently bought a macbook model 2013 end pro on eBay and the seller gave me the password for the user "guest".

    I changed the password to a blank password that I didn't have a password but I did not create a new user account.

    last night I installed clean OS X El Capitan, when installation is complete asked me a password at the login screen.

    I managed to pass the login password, but now I am trying to create a new password in system preferences, but I can't because I'm required to use a password to allow the change.

    Guest user is the only account on my Mac, so I have no idea what to do to get out of this mess.

    Thanks in advance to anyone who can offer support.

    You wipe the drive and then do a fresh install of Mac OS X. You can do this via the network of restoration:

    Installer Lion through Mavericks

    1. Restart the computer and after the chime hold down the keys COMMAND + OPTION + R until it appears a globe. Wait patiently - 5 - 15 minutes - until appears the Utility Menu.
    2. Select in the Menu Utility disk utility and click on the continue button.
    3. Disk utility charges and select the player (usually, it's the entry Out-bumpy with of the mfgr.) ID and size) of the list to one side. Click the Partition tab in the main window of disk utility.
    4. Under the scheme of Volume defined heading the number of partitions in a single volume. Click the Options button, set the GUID partition scheme, and then click the OK button. Define the type of Format Mac OS extended (journaled). Click the Partition button and wait until the end of the process. Quit disk utility and re-enter the Utility Menu.
    5. Select reinstall OS X in the Utility Menu, and then click the install button.

    This should install it the original version of OS X comes with the computer originally.

  • Translation nat ip clear to only one address

    I have this in the nat table

    Inside global internal local outside global local outdoor Pro

    TCP 199.212.17.130:1617 142.135.4.69:1617 132.206.246.112:21 132.206.246.112:21

    and I want to erase just one I go through the command and get this:

    clear the nat ip inside the 199.212.17.130 translation 142.135.4.69

    % Translation not found

    Can you help me?

    Here are a few cpmmands that will help you. What you need to do is to understand what translation you do and then choose the appropriate command: delete all entries in the NAT translation table dynamic address translation: "erase the ip nat translation *"

    Delete an entry simple dynamic translation containing a translation, or inside Interior and outside translation: "clear translation nat ip in ip global local-ip [global outside local-ip-ip]" erase an entry simple dynamic translation containing a translation outside: 'clear local-ip-ip global outside ip nat translation' delete a dynamic conversion entry extended: "clear ip protocol translation nat inside global ip global-port local ip local port [outside port-local-ip-ip local-global global port].

  • Help! I need to connect my iPhone5s to the stereo, but it has only one usb port and whenever I connect it, it connects? Is there a setting on my phone, I need to change? Help, please

    Help! I NEED to connect my iPhone5s to the stereo, but it has only one usb port and whenever I connect it, it connects? Is there a setting I need to change on my phone? Help, please

    You will need something like that and a micro USB to USB cable

    http://www.Apple.com/shop/product/MD820AM/A/lightning-to-micro-USB-adapter

  • seems I'm not the only one having problems with safari after update 9.3 cannot follow the links. Safari blocks. hope it gets fixed quickly. jaa shooting allows to follow the link, but the Web page is not out of good old days. any oher ideas?

    seems I'm not the only one having problems with safari after update 9.3 cannot follow the links. Safari blocks. hope it gets fixed quickly. jaa shooting allows to follow the link, but the Web page is not out of good old days. any oher ideas?

    The 'list' of relevant articles that I know, they are now

    -You can read about the problems in the present statutes and possibly find workaround solutions, particularly in the last

    If you are unable to activate your iPhone, iPad or iPod touch after installing an update - Apple Support

    Apple iOS suspension 9.3 updates for older devices, work on activation fix | IVous

    Apple launches new version of iOS for iPad users 9.3 2 affected by bricking bug | 9to5Mac

    GSM of unfixed addresses Apple iPad 2 Bug with revised Activation iOS 9.3, but the larger question remains - Mac rumors

    If you are unable to activate your iPad 2 (GSM model) update to iOS 9.3 - Apple Support

    9.3 iOS update issues

    Leave a post by: ChitlinsCC

  • Can I find out if I had to buy the Adobe Creative Suite 6 Design & Web Premium, but I subscribed to photography CC for only one month plans, can I unsubscribe it and use the one bought instead?

    Can I find out if I had to buy the Adobe Creative Suite 6 Design & Web Premium, but I subscribed to photography CC for only one month plans, can I unsubscribe it and use the one bought instead?

    I subscribed to the creative cloud only because I did not know that my College courses will be using other software too.

    I hope to unsubscribe to the creative Cloud version and use the purchased instead.

    But if it is not possible, I'll just use the CC version for this year and use the one bought on my other PC.

    Hi, NGOs,

    Yes, if you intend to use CS6, you can still use it after the cancellation of the plan of the CC photography, you can also improve your plan to plan photography to Creative Cloud applications

    If you wish to cancel your plan well photography please contact support by calling/chat for cancellation requests and billing queries:

    https://helpx.Adobe.com/contact.html?step=CCSN_membership-account-payment_cancel-your-memb ership_stillNeedHelp

    * Be sure to stay connected with your Adobe ID before accessing the link above *.

    You can also check the help below document:

    https://helpx.Adobe.com/x-productkb/policy-pricing/cancel-membership-subscription.html

    Please go through the Adobe - General conditions of subscription as well.

    He hopes to help!

    Rayyan

  • Out of several users on my computer only one can access the internet

    Original title: Internet connection

    There are several users on my computer, but only one of them can access the internet, pls help. THX Fred

    Hi Fred,.

    1. is it wired or wireless?

    2. what exactly happens when you try to connect to the internet? You receive an error message?

    3 did you do changes on the computer before the show?

    I suggest to follow the article and check if you can connect to the internet:

    The problems of Internet connection

    http://Windows.Microsoft.com/en-us/Windows-Vista/troubleshoot-Internet-connection-problems

    You can also see the following article for more information on network problems:

    Windows wireless and wired network connection problems

    http://Windows.Microsoft.com/en-us/Windows/help/wired-and-wireless-network-connection-problems-in-Windows

    Reply with more information about the issue so that we can help you better.

  • I'm the only one who run out of ideas of Adobe and can't if used to Adobe draw?

    II have tried very hard to get used to draw Adobe, after love with Adobe ideas since the day wherever she launched.

    just the fact that there is no button to remove the last action is so confused. I can't count how many times I slide a return and I see a line instead of the last deleted action, and the contrary takes place also. I even liked the better graphics.

    I am on my knees. ADOBE, if you please, bring back updated for Adobe ideas. maybe having two apps autour isn't the worst idea.

    ! What do you think of everything? I can't be the only one here !

    So, you can use the pinch gesture to get an overview of all projects, if you missed that.

    Also, if you purchase a bluetooth stylus, you can use the pen to cancel slide 2 fingers instead.

  • I have 2 Mozilla Firefox on my desktop. They are both version 41.0.2 - in my installation and delete I find only one. How can I delete one of them?

    I tried to update to Mozilla Firefox and I had another icon on my desktop. Now, I have Mozilla Firefox 2 and they are both Version 41.0.2. They are both exactly the same thing when I open the. I see only one on my add/remove program location so I won't delete it because I could delete them both. Can you help me?

    You can remove one of the office shortcuts if both point to the same firefox.exe in the same Firefox program folder.
    You can keep the one with the correct version information where the other is an older version of Firefox.
    Note that Firefox 42 will come out next week (Tuesday).

  • I get an error message that "a copy of Firefox is already open. Only one copy of Firefox can be open at a time"and I have no open copy.

    I get an error message that "a copy of Firefox is already open. Only one copy of Firefox can be open at a time"and I have no open copy. How can I fix this problem? I like firefox because it runs many technical programs on the web that do not work with safari. I have FireFox installed on my PowerBook MacPro OS X 10.7.5 32.0.1 version. My activity monitor shows all activity of FireFox, so don't know not what he sees

    Check out these links;
    http://www.bing.com/search?q=Firefox%20not%20Close%20mac

  • Strange double NAT, although there is only a single router

    My ISP (RCN) changed my modem at a speed greater than one.  Although a router built-in, I told them that I didn't use their router, only my Time Capsule, so they disabled.  However, my Time Capsule kept gives me an error message Double NAT and amber flashing against Green, even though everything seemed to work (wireless and wired) and said that I should switch DHCP and NAT to bridge mode.  Correction of the error, but I do not understand what caused the Double NAT if there is only a single router.  The ISP Technical Support people confirmed their control center is not the router feature on in the new modem, I ask.  They also said that their network supports DHCP, although they have other who use the Bridge Mode, although they do not support.   And they knew nothing about it, he said to ask Apple.  They also offered to switch back, but because this modem is faster at the same price.  (He called a bypass gateway 3-in-1).  Many people online told not to use his router, it's why I unplug it and only use the time Capsule.

    So if someone can give me feedback, I'd appreciate it. I must:

    1. keep running the new modem and my Time Capsule in Bridge Mode.

    2. run the new modem in DHCP mode, as they put in place and do not worry Time Capsule seeing amber / flashing Double NAT error.

    3 swap back to the previous modem, which was 50 Mbps against it with (theoretically) 155 Mbit/s (it's only works in 50-70).

    I'm not really all that, but I hope that one of you maybe.  Thank you!!!

    Although a router built-in, I told them that I didn't use their router, only my Time Capsule, so they disabled.

    ISPS often make the mistake of simply turn off the radio on a modem/router...which service does not disable the router function of the device. You still have a wired router when ISPS are making this mistake.

    However, my Time Capsule kept giving me an error message Double NAT

    This confirms again that the ISP has not disabled the function of the router to your modem/router.  On some modems/routers or gateways, it is not possible to get the device to act as a simple modem.

    The ISP Technical Support people confirmed their control center is not the router feature on in the new modem, I ask.

    The fact remains that you wouldn't see a Double NAT error unless the ISP system acted as a router... Despite what people of PSI say. You may need to get a 2nd or 3rd person-level support, who knows what they are doing.

    1. keep running the new modem and my Time Capsule in Bridge Mode.

    Yes, if you want to avoid the mistake of NAT Double... what you are doing. But, the time Capsule will not be your router.  The device of the ISP will be.

    2. run the new modem in DHCP mode, as they put in place and do not worry Time Capsule seeing amber / flashing Double NAT error.

    This only if you willing to accept the fact that the ISP did not correctly change your gateway to make it work as a simple modem only.  You might be able to get away with a Double NAT error on a simple network, but there is no reason more complicate things with a misconfiguration in unless whether there are a few reasons to do it and it can't be avoided.

    3 swap back to the previous modem, which was 50 Mbps against it with (theoretically) 155 Mbit/s (it's only works in 50-70).

    Your decision if you want to run a simple modem with time Capsule, or accept the fact that the time Capsule won't have your router when it is configured in Bridge Mode, or you see a Double NAT error on the network.

    If it were me, I would go back to what I know will work properly... the simple modem and time Capsule as the router.

  • Only one speaker works on the bottom of the phone

    All the documentation that comes with the Turbo 2 and online documentation I've seen before buying indicate that there are two audio ports on the bottom of the phone, one on each side of the Verizon logo. However, only the side right (while facing the phone) actually works. The left speaker does not work. Verizon, which did not, I called and they put someone in support of Motorola on the line. The motorcycle rep says absolutely the two speakers should work and my phone is defective. They suggested that I return it as a guarantee of Exchange. I'm happy to do, but before I did I stopped by a verizon store and checked four phones they had on display. All four phones had the same "defect". So is - can anyone clarify if both speakers work on any Turbo 2 phones?

    I was also wondering with all these mixed news, but there's a tear down video on YouTube which shows clearly there is only one speaker. I hear only on the bottom right, that nothing about ports to the left on mine.

  • serial port read one character

    Hello

    I'm new to the forum, so I don't know if I'm posting this question in the right place.

    However, my problem is I'm trying to communicate via serial rs-232 port and the goal is to read and write the question (code) of the device.

    The Unit regularly sends a "perpetuate" character S. When I read this character, I write the question and receive the response. Then a S appears again and I bravado the code, read the answer and so on...

    The problem is that when I try to do everything at once (read S, send the code and read the answer) and it 14 times before reaching the 1st code again once, labview is very slow. (3-5 seconds to perform this tasks 14 and restart the process). I think that the program becomes slow because that way I'm not using all the S which inflamed the writing and reading process.

    So, I wanted to read character by character (byte-by-byte) and then create a table with the answer. The problem is that the buffer sends answers with several bytes and I can't build an array in 'real time', beacause if I read (read VISA) only one byte, then I would be lost all the others.

    I think that chains concantenate and shift registers are part of the solution, but I have too many problems until I get to the part.

    So, please help me to read a single character and doesn't lose not the other bytes sent by the buffer, in order to fix the process, because I want one second per second refresh. The device emits a flow rate of 19200 baud.

    Thanks in advance

    I think that if you connect the value 1, the reading serial port function, you will receive a byte, and you won't lose the rest.

    The rest are stored in the buffer. If you use the previous function again, you will get the next byte.

  • How can I be sure that I am the only one using my PC?

    I want to be the only one using my pc. But without my permission (I noticed) that someone else uses it too, how can I stop this?

    Moved from feedback

    Original title: only the user's pc

    Hi Jacob,

    It would be great if you can answer the following questions:

    1. which Windows operating system you are using on the computer?

    2. How do you come to know that someone else uses the computer?

    3. have you created several user accounts on the computer?

    I suggest you to create a password for user accounts, so that no one else will have access to the computer. Check out the link for more information:

    Protect your computer with a password

    http://Windows.Microsoft.com/en-us/Windows7/protect-your-computer-with-a-password

    The article also applies to Windows Vista.

    If you have already created a password, try to set:

    Change your Windows password

    http://Windows.Microsoft.com/en-us/Windows7/change-your-Windows-password

    The article also applies to Windows Vista.

    Please provide details to help you best.

  • Photosmart 7510 prints only one page when I copy 2 sided-multipage document

    I have a two-sided 4-page document. I have placer place in autonatic tray, select Copy 2 head to head 2 and press "Black." All pages are scanned, but only one page (2 sides), one out. I expect all 4 pages 2 faces out. What's wrong?

    Thank you.

    You are right. This printer does not the ADF duplex scan. It will print a copy of the 2 sides but the face page of the first page front and back on the face of the first page printed copy pages and page of the face of the second duplex page on the back of the first page printed from copy. What a waste. Well, I need now to decide if I want to keep this printer or send it back since it's the LPB brand.

Maybe you are looking for

  • Power cable in bulk

    I bought my laptop 15.5 inches of VPCEL26FX/B Dec 29, so I should be covered by the warranty. Fix?The power cord is loose and flickers in and out. If I want to I can keep a constant load, adjust when the screen becomes dim it restores the charge so I

  • Can I watch movies on my tv from my S3?

    I finally bought a windows 7 S3 and wandered to see if I could connect it on my LCD TV for watching movies. Can anyone help?

  • Disconnected network drive

    Hello, I installed a Windows 2008 (replacement of a Server 2003) domain server with 5 customers Pro XP. There is a login script that is managed by the workstations when they login to map network drives.  Who is pulled from the server.  On the worksta

  • I need to change my address for AutoFill in

    Change the AutoFill information

  • T-410 microphone has stopped working

    About a week after that my T-410 has been delivered, the microphones stopped working. When I go into the control panel to check the device, it says there is no device. There is no device driver listed in the Manager of devices for the microphone (jus