?
Solved

How do I open UDP port 123 thru the Cisco 1941 router

Posted on 2011-03-09
4
Medium Priority
?
2,215 Views
Last Modified: 2012-05-11
I am new in cisco, and I have one question about open UDP port 123. I have a 1941 router. I need to open UDP port 123 for 64.147.116.229 to one of my internal server (IP 192.168.0.1). Do I use the following? Thank you in advance.

permit udp 64.147.116.229 192.168.0.1 eq 123
0
Comment
Question by:weikiiro
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 
LVL 3

Expert Comment

by:mrmozaffari
ID: 35088682
Correct ,But you also need to assign this access-list to an interface.
And also you have decide in which direction it has to assign.

As an example if your 64.147.116.229 is in the range for fast ethernet 0/1 and your Server 192.168.0.1 is in the range of Fast ethernet 0/0 then :

Conf t
ip access-list extended Test
exit
Interface fa0/1
access-group Test in

ctrl+z

Thats all.
0
 
LVL 3

Expert Comment

by:mrmozaffari
ID: 35088714
Sorry i have to correct my previous syntax :

Ip access-group Test in
0
 

Author Comment

by:weikiiro
ID: 35088931
ic, thank you for your help mrmozaffari. for permit udp 64.147.116.229 192.168.0.1 eq 123, should the external Ip go first or internal ip? I need to establish a 2 way communication.
0
 
LVL 3

Accepted Solution

by:
mrmozaffari earned 2000 total points
ID: 35089050
You did it correctly ,Why ?
Oh just one :
To define a correct access list ; Your syntax is not correct,
Don't Forget Wild card or "Host"
Correct is :

permit udp 64.147.116.229 0.0.0.0 192.168.0.1 0.0.0.0 eq 123

OR

permit udp Host 64.147.116.229 0.0.0.0 Host 192.168.0.1 eq 123

They are same.



It is the structure of the Extended ACLs :

Permit/Deny Protocol [Source] [Destination]
or
for permit Rule :

Permit [protocol] [Source address] [Wild card mask] [eq] [port number] [Destination Address] [Wild card mask] [eq] [port number]

Best Regards,
Mozaffari.
0

Featured Post

NFR key for Veeam Agent for Linux

Veeam is happy to provide a free NFR license for one year.  It allows for the non‑production use and valid for five workstations and two servers. Veeam Agent for Linux is a simple backup tool for your Linux installations, both on‑premises and in the public cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
During and after that shift to cloud, one area that still poses a struggle for many organizations is what to do with their department file shares.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…
Suggested Courses

771 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question