daxa78
asked on
Having probles nating in cisco asa 8.4
Hi,
For some reason, my nats doesnt work. This is my first attempt at configuring a post 8.3 asa.
Relevant config afaik:
object network vent1
host 192.168.0.122
access-list outside_access_in extended permit tcp host 82.xx.xx.xx object vent1 eq www
object network vent1
nat (inside,outside) static interface service tcp www www
According to the syslog it works when I try to connect (from my office ip to my clients ip, which both starts with 82.xx) My web-browser fails the connection though - and the web site works fine from the inside.
6 Aug 29 2013 07:01:53 82.xx.xx.xx 30454 192.168.0.122 80 Built inbound TCP connection 65875 for outside:82.xx.xx.xx/30454 (82.xx.xx.xx/30454) to inside:192.168.0.122/80 (82.xx.xx.xx/80)
I must be overlooking something, but i have no idea what. Any thoughts?
For some reason, my nats doesnt work. This is my first attempt at configuring a post 8.3 asa.
Relevant config afaik:
object network vent1
host 192.168.0.122
access-list outside_access_in extended permit tcp host 82.xx.xx.xx object vent1 eq www
object network vent1
nat (inside,outside) static interface service tcp www www
According to the syslog it works when I try to connect (from my office ip to my clients ip, which both starts with 82.xx) My web-browser fails the connection though - and the web site works fine from the inside.
6 Aug 29 2013 07:01:53 82.xx.xx.xx 30454 192.168.0.122 80 Built inbound TCP connection 65875 for outside:82.xx.xx.xx/30454 (82.xx.xx.xx/30454) to inside:192.168.0.122/80 (82.xx.xx.xx/80)
I must be overlooking something, but i have no idea what. Any thoughts?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
You only want to allow 1 IP address to the web server?
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Figured it out. The guys who set up the servers i tried to reach didnt configure gateway in tcp/ip settings.