Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 305
  • Last Modified:

Cisco PIX 506E Config Question

Here's what I need:

Port 80 to allow outgoing traffic.
Port 80 to allow incoming traffic but pointed to 192.168.1.1 because I have a HTTP server on that box.

Port 21 to allow outgoing traffic.

Port 25 to allow outgoing traffic.
Port 25 to allow incoming traffic but pointed to 192.168.1.210 because I have my mail server on that box.

0
myfootsmells
Asked:
myfootsmells
  • 2
1 Solution
 
stressedout2004Commented:
Configuration will depend on how many public IP you have.

If you only have one public IP:

global (outside) 1 interface
nat (inside) 1 0.0.0.0 0.0.0.0
static (inside,outside) tcp interface www 192.168.1.1 www netmask 255.255.255.255
static (inside,outside) tcp interface 25 192.168.1.210 25 netmask 255.255.255.255
access-list acl_out permit tcp any interface outside eq 80
access-list acl_out permit tcp any interface outside eq 25
access-group acl_out in interface outside
clear xlate

If you have more than one public IP

global (outside) 1 interface
nat (inside) 1 0.0.0.0 0.0.0.0
static (inside,outside) x.x.x.x 192.168.1.1 netmask 255.255.255.255
static (inside,outside) y.y.y.y 192.168.1.210 netmask 255.255.255.255
access-list acl_out permit tcp any host x.x.x.x eq 80
access-list acl_out permit tcp any host y.y.y.y eq 25
access-group acl_out in interface outside
clear xlate

0
 
myfootsmellsAuthor Commented:
what does clear xlate do?  now after I load that up and let's say one month later I want to add another protocol to allow port 143 to allow outgoing traffic, how would i do that?
0
 
stressedout2004Commented:
Clear xlate just refreshes the PIX xlate table. Just add another static entry and access-rule.

static (inside,outside) tcp interface 143 192.168.1.x 143 netmask 255.255.255.255
access-list acl_out permit tcp any interface outside eq 143
0

Featured Post

VIDEO: THE CONCERTO CLOUD FOR HEALTHCARE

Modern healthcare requires a modern cloud. View this brief video to understand how the Concerto Cloud for Healthcare can help your organization.

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now