Link to home
Start Free TrialLog in
Avatar of OAC Technology
OAC TechnologyFlag for United States of America

asked on

Disable port rewriting/randomization for a TCP and UDP port on a Cisco ASA 5510 firewall.

I have a Cisco ASA 5510 firewall that I need to disable port rewriting/randomization for TCP 8008 and UDP 8008 across all my VLAN's and subnets. How Do I do this on the Cisco ASA 5510 firewall?
Avatar of btan
btan

It looks like a Dynamic PAT/NAT havign wide range but can we venture instead into Static state instead as in the ref where the mapped port can be specified for specific targeted IP src and dest
http://www.cisco.com/c/en/us/td/docs/security/asa/asa84/asdm64/configuration_guide/asdm_64_config/nat_objects.html#wp1106703
ASKER CERTIFIED SOLUTION
Avatar of Pete Long
Pete Long
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of OAC Technology

ASKER

Hi,

Thanks for the suggestions. Pete, I've implemented what you have there, but I'm still seeing the TCP and UDP ports being randomized. I do see in the logs now that it says "Built TCP state-bypass connection from OUTSIDE:x.x.x.x/58239 to INSIDE:y.y.y.y/8008"

Any ideas?
Also, I am on ASA version 9.1(5)
Anything else I should try?