Cisco ASA 5506

I have about 60 public ip's. How can I forward a port on an ASA using a different ip other than my public?

If my public is 172.16.1.25....this is also the ip assigned to my outside interface. I would like to have 172.16.1.26 forwarded to a server on my network.

Any ideas
Dawin DaiseSr. Windows Systems AdministratorAsked:
Who is Participating?
 
Jan SpringerCommented:
Yes, on the outside interface for any traffic permitted to that IP and port.

If you're using 8.3 and later (which you probably are with a 5506), then you refer to the object that has the inside IP address defined in your outside access list:

access-list outside extended permit tcp any object SERVER-SMTP eq 25
access group outside in interface outside
0
 
Jan SpringerCommented:
Port forwarding tcp 25 (smtp):

NAT:

object network SERVER
 host 192.168.1.26
 nat (inside,outside) static 172.16.1.26


PORT FORWARD:

object network SERVER-SMTP
 host 192.168.1.26
 nat (inside,outside) static 172.16.1.26 tcp smtp smtp
0
 
Dawin DaiseSr. Windows Systems AdministratorAuthor Commented:
Do I need an ACL?
0
 
Dawin DaiseSr. Windows Systems AdministratorAuthor Commented:
Thanks for all of your help.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.