Link to home
Start Free TrialLog in
Avatar of rsvsolutions
rsvsolutionsFlag for United States of America

asked on

NAT Issue Cisco ASA 5520

So this is a stupid issue and I know it.

We have a Cisco 5520, we want to )temporarily) allow traffic form the outside to an internal server that will not live in the DMZ, but on our actual internal lan. yes I know the risk..

The outside IP is  2.3.4.5 which i need to go to 10.2.3.4
I only need ports 444/445 as well

When i add an external static i do this:
original:

interface = external
source = 2.3.4.5

translated:
interface = internal
Use Ip address = 10.2.3.4

i see traffic come in to my internal box but nothing goes back out.

if I add a reverse of this rule to my internal NAt list as a static, it stays the same..thoughts?
Avatar of rsvsolutions
rsvsolutions
Flag of United States of America image

ASKER

It like I cant build the outbound connection back to the external IP.
SOLUTION
Avatar of harbor235
harbor235
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial