PIX 505 Port Forward

Posted on 2009-04-08
Last Modified: 2012-05-06
I need to port forward SSH traffic that is headed to my PIX 505 and send it to an internal host. The trouble with this is the SSH port my Pix is listnening on. I need to use a different port number and port forward to the internal host on teh SSH port.

So for the sake of argument I need to take port 50 TCP on the outside and port forward to 22 on the inside host... can someone advise how to do that... ?

I also need to port forward port 2005 TCP to port 2005 TCP on an internal host.

Question by:NTGuru705
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
LVL 16

Expert Comment

ID: 24099158
static (inside,outside) tcp [outside ip] 50 host [inside ip] 22


static (inside,outside) tcp [outside ip] 2005 host [inside ip] 2005
LVL 16

Expert Comment

ID: 24099162
You will also need to modify your incoming ACLs to permit the traffic in.
LVL 43

Accepted Solution

JFrederick29 earned 500 total points
ID: 24099182
Here is the syntax:

static (inside,outside) tcp interface 50 10.75.2.x 22 netmask
static (inside,outside) tcp interface 2005 10.75.2.x 2005 netmask

access-list acl_out permit tcp any interface outside eq 50
access-list acl_out permit tcp any interface outside eq 2005

Featured Post

Ready to trade in that old firewall?

Whether you need to trade-up to a shiny new Firebox or just ready to upgrade from whatever appliance you're using now, WatchGuard has the right appliance for you! Find your perfect Firebox today with appliance sizing tool!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

WARNING:   If you follow the instructions here, you will wipe out your VTP and VLAN configurations.  Make sure you have backed up your switch!!! I recently had some issues with a few low-end Cisco routers (RV325) and I opened a case with Cisco TA…
A 2007 NCSA Cyber Security survey revealed that a mere 4% of the population has a full understanding of firewalls. As business owner, you should be part of that 4% that has a full understanding.
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Suggested Courses

624 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question