Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

pix firewall and port forwarding

Posted on 2005-05-17
1
Medium Priority
?
427 Views
Last Modified: 2013-11-16


I have just replace a DLink firewall on my DSL connection with a Cisco 501 PIX firewall. On the DLink we have port forwarding setup to forware "IP" protocol for port #1050 to an internal machine on our LAN (with IP address 192.168.0.114). I need to know what would be the proper way to do the same forwarding on a Cisco PIX. I see examples of things like:
static(inside,outside) tcp interface http 192.168.0.114 http netmask 255.255.255.255

and correspondingly

access-list outside_in permit tcp any interface outside eq http

but the port forwarding in my dlink said protocol is IP (0) 1050/1050.  So how does that compare to either tcp or udp?

thanks terry


Thank you for your help.

Terry
0
Comment
Question by:techbnjcomp
1 Comment
 
LVL 79

Accepted Solution

by:
lrmoore earned 2000 total points
ID: 14027082
Let's assume that you need both tcp and udp 1050

static (inside,outside) tcp interface 1050 192.168.0.114 1050 netmask 255.255.255.255
static (inside,outside) udp interface 1050 192.168.0.114 1050 netmask 255.255.255.255
access-list outside_in permit tcp any interface outside eq 1050
access-list outside_in permit udp any interace outside eq 1050
access-group outside_in in interface outside

One you have that setup, you can use "show access-list" to see the (hitcount= ) on either the tcp or udp line.
If either one gets zero hits, but many on the other one, then we know for sure which you need and which one you can later delete from the config..
0

Featured Post

Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

When speed and performance are vital to revenue, companies must have complete confidence in their cloud environment.
WARNING:   If you follow the instructions here, you will wipe out your VTP and VLAN configurations.  Make sure you have backed up your switch!!! I recently had some issues with a few low-end Cisco routers (RV325) and I opened a case with Cisco TA…
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…
Suggested Courses
Course of the Month20 days, 19 hours left to enroll

810 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question