Solved

cisco pix port redirection for a range of ports to one host

Posted on 2003-11-05
3
4,665 Views
Last Modified: 2013-11-29
Hi,  i am trying to configure a cisco pix 506e running 6.3.1 to have a range of ports redirected to a host. For example, tcp ports 5000 thru 6000 should be redirected to 192.168.4.4 and tcp ports 7000-8000 to 192.164.4.5. I also only have one public ip address so I am doing PAT as well.
 I need the appropraite static commands for each host as well as the acls.


This is the usual command i use for one port,  

static (inside,outside) tcp 209.195.146.118 ftp FTPHTTP ftp netmask 255.255.255.255 0 0

0
Comment
Question by:ckassouf
3 Comments
 
LVL 79

Accepted Solution

by:
lrmoore earned 500 total points
ID: 9690734
Sorry, but there is no easy way around this by assigning a port range to a static PAT statement..
0
 

Expert Comment

by:juanmamerino
ID: 9693012
Map every port you need using the command you mentioned and don't forget to add a new conduit line for each port or use access-lists.

Mapping:
static (inside,outside) tcp 195.1.1.1 5000 192.168.0.2 5000 netmask 255.255.255.255 0 0

Conduit:

conduit permit tcp host 195.1.1.1 eq 5000 any

Hope this help,

Juanma Merino
Barcelona
0
 

Author Comment

by:ckassouf
ID: 9695052
Thanks to all,  you verified what my hunch was,  statics can only be done port by port.  Take care !
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco vWLC DHCP issues 36 60
managing a small network 6 97
vSphere 5.5 - move subnet to another data center? 2 19
How to simulate latency? 5 40
Short answer to this question: there is no effective WiFi manager in iOS devices as seen in Windows WiFi or Macbook OSx WiFi management, but this article will try and provide some amicable solutions to better suite your needs.
In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

839 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question