<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Router Firewall Question in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812731#M1006044</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you have any ip port-map commands? do you have any port redirection commnds? Can you post your configuration?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 26 Apr 2007 18:33:33 GMT</pubDate>
    <dc:creator>oabduo983</dc:creator>
    <dc:date>2007-04-26T18:33:33Z</dc:date>
    <item>
      <title>Router Firewall Question</title>
      <link>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812728#M1006041</link>
      <description>&lt;P&gt;I have a 2801 connected to the Internet running the Firewall Feature Set. Version is 12.3(8r)T8. I keep getting log messages that the router has denied access from some random webservers from Port 80. We are running NAT Overload and when I show the NAT translations, that Port is not in the translate table for that traffic. In other words, it almost looks like the router is denying return web traffic, but that port is not seen by the router as "established" traffic. Anyone have any ideas? Thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 10:05:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812728#M1006041</guid>
      <dc:creator>bbeal</dc:creator>
      <dc:date>2019-03-11T10:05:02Z</dc:date>
    </item>
    <item>
      <title>Re: Router Firewall Question</title>
      <link>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812729#M1006042</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you have this command on your outside interface:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip inspect FW-INSPECT out&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 Apr 2007 18:03:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812729#M1006042</guid>
      <dc:creator>Chandramohan Nagarajah</dc:creator>
      <dc:date>2007-04-26T18:03:45Z</dc:date>
    </item>
    <item>
      <title>Re: Router Firewall Question</title>
      <link>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812730#M1006043</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;   Yes, there is an inspect for TCP, so it should allow returning web traffic. Also, access to outside web servers seems to work, although I am curious to find out if some web access is failing. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 Apr 2007 18:29:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812730#M1006043</guid>
      <dc:creator>bbeal</dc:creator>
      <dc:date>2007-04-26T18:29:36Z</dc:date>
    </item>
    <item>
      <title>Re: Router Firewall Question</title>
      <link>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812731#M1006044</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you have any ip port-map commands? do you have any port redirection commnds? Can you post your configuration?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 Apr 2007 18:33:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812731#M1006044</guid>
      <dc:creator>oabduo983</dc:creator>
      <dc:date>2007-04-26T18:33:33Z</dc:date>
    </item>
    <item>
      <title>Re: Router Firewall Question</title>
      <link>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812732#M1006047</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;  There is lots of port redirection on this router, but not on the NAT Overload IP address. Unfortunately, I can't post the whole config as there are some serious security issues that need to be addressed. Let me know if there are some specific parts that would be helpful to share.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 Apr 2007 19:02:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812732#M1006047</guid>
      <dc:creator>bbeal</dc:creator>
      <dc:date>2007-04-26T19:02:59Z</dc:date>
    </item>
    <item>
      <title>Re: Router Firewall Question</title>
      <link>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812733#M1006048</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here is an example of the log messages we get 2 or 3 times a minute. The from address is a valid web site. I changed the NAT Overload address to protect the innocent:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;995990: Apr 26 20:56:20.315: %SEC-6-IPACCESSLOGP: list 105 denied tcp 170.107.179.50(80) -&amp;gt; 192.168.1.136(1900), 1 packet&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 Apr 2007 20:09:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/router-firewall-question/m-p/812733#M1006048</guid>
      <dc:creator>bbeal</dc:creator>
      <dc:date>2007-04-26T20:09:24Z</dc:date>
    </item>
  </channel>
</rss>

