?
Solved

Port Mapping Question

Posted on 2011-03-03
1
Medium Priority
?
330 Views
Last Modified: 2013-11-05
Hello,

I have a question regarding port mappings/redirecting. I have a web application that uses port 8000. I have a private IP mapped to a Public IP, and I want to know if it's possible for users who access this application and not have to type in the ip address and then the port 8000 following or have to type domain name and then port 8000. Can I configure something on the FW or even the DNS end on Windows so that users will only have to type in the ip address or domain name (not needing to type in port 8000 afterwards) to access the application?
Thank You in advance to anyone who assists.
0
Comment
Question by:johnsink
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 33

Accepted Solution

by:
MikeKane earned 2000 total points
ID: 35029389
You could do a port forward for this on the ASA/PIX.  

One thing to know is that you can not have a 1 to 1 static NAT and a 2nd port forward going to the same internal IP.  It's one or the other.  

So, you would need to configure DNS A record for webapp.domain.com to point to an IP, (for this example 10.1.1.1)  

The ASA accepts inbound traffic on 10.1.1.1 on 80 then port forwards it inside to your host on, say, 192.168.1.10 on port 8000  


It would look something like this:

static (inside,outside) tcp 10.1.1.1 80 192.168.1.10 8000
access-list outside_in extended permit tcp any host 10.1.1.1 eq http
access-group outside_in in interface outside

Here's more info:
http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a00804708b4.shtml
0

Featured Post

NFR key for Veeam Agent for Linux

Veeam is happy to provide a free NFR license for one year.  It allows for the non‑production use and valid for five workstations and two servers. Veeam Agent for Linux is a simple backup tool for your Linux installations, both on‑premises and in the public cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

If you have an ASA5510 then this sort of thing would be better handled with a CSC Module, however on an ASA5505 thats not an option, and if you want to throw in a quick solution to stop your staff going to facebook during work time, then this is the…
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…
Suggested Courses

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question