How  do I  Allow file access to the internet for a specific file on a client with an ASA5505

Posted on 2011-10-21
Last Modified: 2013-11-05
Although I know firewalls to a certain extent, I have never had to configure this setting.  We are getting a runtime error for a piece of software and the support people are telling me its because the updater doesn't have access to the internet through the firewall.
Question by:paul_no
    LVL 33

    Accepted Solution

    You can't control access for a specific application, but you can allow outbound access from the IP address of the host.


    Author Comment

    I mean they have standard internet access on this machine.  Do you think the firewall would be stopping this one file from accessing the net?
    LVL 33

    Expert Comment

    It would not be.      The ASA would not be doing this for a specific application.    There is QOS where you can prioritize traffic based on known protocols or specific ports....  but if you don't have that setup, it wouldn't come into play.  

    As a test, hop on that machine and see if you can get outbound.    Make sure the local windows firewall or iptables isn't blocking outbound traffic (you can shut it down just for a quick test).    

    On the ASA, you can always have the host make an attempt then issue a SHOW LOGGING on the ASA.  Any dropped packets will be listed along with a reason for the drop.  


    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    Top 6 Sources for Identifying Threat Actor TTPs

    Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

    This is about downgrading PIX Version 8.0(4) & ASDM 6.1(5) to PIX 7.2(4) and ASDM 5.2(4) but with only 64MB RAM and 16MB flash. Background: You have a Cisco Pix 515E which was running on PIX 7.2(4) and its supporting ASDM 5.2(4) without any i…
    Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
    To add imagery to an HTML email signature, you have two options available to you. You can either add a logo/image by embedding it directly into the signature or hosting it externally and linking to it. The vast majority of email clients display l…
    In this sixth video of the Xpdf series, we discuss and demonstrate the PDFtoPNG utility, which converts a multi-page PDF file to separate color, grayscale, or monochrome PNG files, creating one PNG file for each page in the PDF. It does this via a c…

    737 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    22 Experts available now in Live!

    Get 1:1 Help Now