Link to home
Start Free TrialLog in
Avatar of sumod_jacob
sumod_jacobFlag for United States of America

asked on

ASA Firewall Issue to access Webserver

I have problem to access new website from outside. Connection from outside as Router > ASA 5520 > CSS > Web Server. Web server is in DMZ. I am able to access website from inside. seems Firewall access list not showing any hitcount. below is show nat and show access-list result


#Sh NAT
match ip web&sp_dmz host VMCOLLABSP-CancerTodaymag outside any
    static translation to 12.39.245.56
    translate_hits = 0, untranslate_hits = 1160

#Sh Access-List
access-list outside_access_in line 71 remark CancerTodaymag.org
access-list outside_access_in line 72 extended permit tcp any host 12.39.245.56 object-group Web_TCP_Ports 0x62b5b0b0
access-list outside_access_in line 72 extended permit tcp any host 12.39.245.56 eq www (hitcnt=0) 0xbc7a243e
access-list outside_access_in line 72 extended permit tcp any host 12.39.245.56 eq https (hitcnt=0) 0xefc064a4

Avatar of Maen Abu-Tabanjeh
Maen Abu-Tabanjeh
Flag of Jordan image

access-list outside_acl extended permit tcp any host 12.39.245.56 eq https

Open in new window

permit access to inside to your exchange website which is https .. try it
sorry i missed something , you are unable to access it from outside?
btw check this article explain logging in ASA

http://www.ciscopress.com/articles/article.asp?p=424447&seqNum=3
SOLUTION
Avatar of Maen Abu-Tabanjeh
Maen Abu-Tabanjeh
Flag of Jordan image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of sumod_jacob

ASKER

Issue solved by myself
ee