Solved

pix506e

Posted on 2003-10-29
3
239 Views
Last Modified: 2013-11-16
how to open ports in cisco pix 506e
0
Comment
Question by:nakka_sudhir
3 Comments
 
LVL 2

Accepted Solution

by:
Russky earned 50 total points
Comment Utility
Hi Nakka,

Can only give you basic info given the amount I have to go on!

Pix 506, you will need 2 Access Lists - One for the External interface and one for the Internal Interface.

Unless you are running a webserver or other kind of service, the external access list should deny everything
The internal access list should only allow through the traffic you need, i.e. port 80 for Web Browsing, 442 for SSL Etc..

So, firstly you need to create your access lists:
***
access-list acl_out deny ip any any
access-list acl_int permit tcp host any any eq www
access-list acl_int permit udp host any any eq domain
***

Then you bind them to the required interface:
***
access-group acl_out in interface outside
access-group acl_int in interface inside
***

acl_out is bound to the outside interface and denys all incoming traffic
acl_int is bound to the inside interface and only allows traffic out on ports 80 and 53 - the basics needed for web browsing.

Provided the rest of the pix is set up correctly you will now be able to look at web pages.

Hope this helps,

Russky




0

Featured Post

Free Trending Threat Insights Every Day

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

Join & Write a Comment

#Citrix #Citrix Netscaler #HTTP Compression #Load Balance
If you're not part of the solution, you're part of the problem.   Tips on how to secure IoT devices, even the dumbest ones, so they can't be used as part of a DDoS botnet.  Use PRTG Network Monitor as one of the building blocks, to detect unusual…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

728 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now