?
Solved

ASA5505 not allowing www requests

Posted on 2013-11-19
2
Medium Priority
?
373 Views
Last Modified: 2013-11-20
For some reason my first attempt to create a rule on our new Cisco ASA 5505 router failed. It should be a simple rule: to allow http requests to go to a specific IP inside the LAN.

There's the part of the config file:
access-list inside_access_in extended permit tcp any host 192.168.2.5 eq www
access-list inside_access_in extended permit tcp any host 192.168.2.5 eq ftp
0
Comment
Question by:Orleen
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 6

Accepted Solution

by:
penguinjas earned 1500 total points
ID: 39660876
I think you created the rules in the wrong zone.  Create the rule specifying the outside interface to the inside like below.

access-list outside extended permit tcp any host 192.168.2.5 eq www
access-list outside extended permit tcp any host 192.168.2.5 eq ftp
0
 

Author Closing Comment

by:Orleen
ID: 39663701
I figured it out. Had to create a NAT object that was the internal machine's IP, and then create an outbound rule that forwards the http requests to this object.
Thank you!
0

Featured Post

On Demand Webinar: Networking for the Cloud Era

Did you know SD-WANs can improve network connectivity? Check out this webinar to learn how an SD-WAN simplified, one-click tool can help you migrate and manage data in the cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Optimal Xbox 360 connectivity requires "OPEN NAT". If you use Juniper Netscreen or SSG firewall products in a home setting, the following steps will allow you get rid of the dreaded warning screen below and achieve the best online gaming environment…
I found an issue or “bug” in the SonicOS platform (the firmware controlling SonicWALL security appliances) that has to do with renaming Default Service Objects, which then causes a portion of the system to become uncontrollable and unstable. BACK…
In this video we outline the Physical Segments view of NetCrunch network monitor. By following this brief how-to video, you will be able to learn how NetCrunch visualizes your network, how granular is the information collected, as well as where to f…
In this video, Percona Solutions Engineer Barrett Chambers discusses some of the basic syntax differences between MySQL and MongoDB. To learn more check out our webinar on MongoDB administration for MySQL DBA: https://www.percona.com/resources/we…
Suggested Courses

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question