Cisco ASA access-rule

Hi

Quick question.

I am using a Cisco ASA 5520

I need to sort out an FTP location to allow 1 specific external IP address inside our network to connect to one specific FTP location. Only allowing the FTP protocal to get to our inside server.

The code i am going to enter will be:
access-list inside_access_in extended permit host (CustomerexternalIP) host (MYExternalIP) eq ftp

static (inside,outside) (MYExternalIP) (MYInteralIP)netmask 255.255.255.255

Have i got this correct, before i enter it

Many thanks

many thanks
vconstantinouAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

RPPreacherCommented:
access-list inside_access_in extended permit tcp host (CustomerexternalIP) host (MYExternalIP) eq ftp

otherwise all good.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
zwart072Commented:
you wrorte inside_access_in, is this the access-list which is bound to the outside interface? Normally you call the outside access-list outside_access_in. You have to make sure you edit the correct access-list!!
Check which access-list is applied to your outside interferace:
sh run access-group
0
RPPreacherCommented:
>Check which access-list is applied to your outside interferace:

True.  I shouldn't have assumed that your named access list was already applied to the interface.
0
vconstantinouAuthor Commented:
Thank you i did make an error there it shoudld have been outside-access_in

all works

many thanks
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Hardware Firewalls

From novice to tech pro — start learning today.