port forwarding with cisco 2600

Hi, i want to use porforward for 25 ,22,80 from this router to another server
how can i do that ??

LVL 29
fosiul01Asked:
Who is Participating?
 
memo_tntCommented:
same as i sent before just put the server IP,, and every thing will become ok

ip nat inside source static tcp Server.IP 22 interfaceEthernet0/0 22
ip nat inside source static tcp Server.IP 25 interface Ethernet0/0 25
ip nat inside source static tcp Server.IP 80 interface Ethernet0/0 80
0
 
memo_tntCommented:
Hi

ip nat inside source static tcp Server.IP 22 interface WANinterface 22
ip nat inside source static tcp Server.IP 25 interface WANinterface 25
ip nat inside source static tcp Server.IP 80 interface WANinterface 80



0
 
fosiul01Author Commented:
Hi thanks
if i just type those command will it work ?? or do i have to do something else like
define source ..

here router ipaddress : 192.168.1.1 ( enterface1) which is connected to insdie

and Isp whic his conencted to interface2. 33.33.33.33


0
Get Certified for a Job in Cybersecurity

Want an exciting career in an emerging field? Earn your MS in Cybersecurity and get certified in ethical hacking or computer forensic investigation. WGU’s MSCSIA degree program was designed to meet the most recent U.S. Department of Homeland Security (DHS) and NSA guidelines.  

 
memo_tntCommented:
yes ,,
and if you have an ACL you need to allow those ports through it..

can you podt your configuration
0
 
fosiul01Author Commented:
ok give me 1 hour, i will past the ACL here
thanks
0
 
Istvan KalmarHead of IT Security Division Commented:
and you need 'ip nat inside command' for outside leg and 'ip nat inside command' for inside leg
0
 
fosiul01Author Commented:
Hi
this is my nat access list

ip nat inside source list NAT_ADDRESS interface Ethernet0/0 overload

and

ip access-list standard NAT_ADDRESS
 permit 193.132.0.0 0.0.255.255

also

EV-Router#show ip interface brief
Interface              IP-Address      OK? Method Status                Protocol
Ethernet0/0            192.168.1.66    YES manual up                    up   --------------- ISP
Ethernet0/1            193.132.234.1   YES manual up                    up -----------------  INTERNAL
(dont worry about the IP)

 , now how will i allow portfowarding ??

i am new to cisco, so please bare with me
0
 
Istvan KalmarHead of IT Security Division Commented:
could you show us the whole config?
0
 
fosiul01Author Commented:
here it is

EV-Router#show running-config
Building configuration...
 
Current configuration:
!
version 12.0
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname EV-Router
!
enable secret 5 xxxxxxxx/
enable password xxxxx
!
memory-size iomem 10
ip subnet-zero
ip name-server 192.168.1.254
!
!
!
!
!
interface Ethernet0/0
 ip address 192.168.1.66 255.255.255.0
 no ip directed-broadcast
 ip nat outside
!
interface Ethernet0/1
 ip address 193.132.234.1 255.255.255.0
 no ip directed-broadcast
 ip nat inside
!
ip nat inside source list NAT_ADDRESS interface Ethernet0/0 overload
ip classless
ip route 0.0.0.0 0.0.0.0 192.168.1.254
!
!
ip access-list standard NAT_ADDRESS
 permit 193.132.0.0 0.0.255.255
banner motd ^C
****************************
this is a secure router,Unauthorized logins are
restricted.
****************************
^C
!
line con 0
 password xxxxx
 logging synchronous
 login
 transport input none
line aux 0
line vty 0 4
 password xxxx
 login
!

Open in new window

0
 
Istvan KalmarHead of IT Security Division Commented:
Hi, why you use private ip address on inside leg?

193.132.234.1
0
 
fosiul01Author Commented:
thanks its works

by looking at my configuration file

is there any security conncern?? if i put this router to be public face
do i need take any extra action to make it secure?


also

does this router, by default close every incomming port rather then 22 ( now i defined it)
0
 
fosiul01Author Commented:
@ikalmar

As i said, dont worry about my IP in my previous post, i know its looks like public ip, but its not

0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.