Solved

How do I open UDP port 123 thru the Cisco 1941 router

Posted on 2011-03-09
4
2,112 Views
Last Modified: 2012-05-11
I am new in cisco, and I have one question about open UDP port 123. I have a 1941 router. I need to open UDP port 123 for 64.147.116.229 to one of my internal server (IP 192.168.0.1). Do I use the following? Thank you in advance.

permit udp 64.147.116.229 192.168.0.1 eq 123
0
Comment
Question by:weikiiro
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 
LVL 3

Expert Comment

by:mrmozaffari
ID: 35088682
Correct ,But you also need to assign this access-list to an interface.
And also you have decide in which direction it has to assign.

As an example if your 64.147.116.229 is in the range for fast ethernet 0/1 and your Server 192.168.0.1 is in the range of Fast ethernet 0/0 then :

Conf t
ip access-list extended Test
exit
Interface fa0/1
access-group Test in

ctrl+z

Thats all.
0
 
LVL 3

Expert Comment

by:mrmozaffari
ID: 35088714
Sorry i have to correct my previous syntax :

Ip access-group Test in
0
 

Author Comment

by:weikiiro
ID: 35088931
ic, thank you for your help mrmozaffari. for permit udp 64.147.116.229 192.168.0.1 eq 123, should the external Ip go first or internal ip? I need to establish a 2 way communication.
0
 
LVL 3

Accepted Solution

by:
mrmozaffari earned 500 total points
ID: 35089050
You did it correctly ,Why ?
Oh just one :
To define a correct access list ; Your syntax is not correct,
Don't Forget Wild card or "Host"
Correct is :

permit udp 64.147.116.229 0.0.0.0 192.168.0.1 0.0.0.0 eq 123

OR

permit udp Host 64.147.116.229 0.0.0.0 Host 192.168.0.1 eq 123

They are same.



It is the structure of the Extended ACLs :

Permit/Deny Protocol [Source] [Destination]
or
for permit Rule :

Permit [protocol] [Source address] [Wild card mask] [eq] [port number] [Destination Address] [Wild card mask] [eq] [port number]

Best Regards,
Mozaffari.
0

Featured Post

Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco ASA 5512 LAN Config 16 101
Configuring WAN interface on Cisco ASA5525 3 33
Changing VLAN information 3 36
Recovering ASA 5505 vpn config from flash card? 7 34
In the world of WAN, QoS is a pretty important topic for most, if not all, networks. Some WAN technologies have QoS mechanisms built in, but others, such as some L2 WAN's, don't have QoS control in the provider cloud.
How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…

735 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question