<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco Asa : Opening Port 80,443 but limit it to specific Public IP's in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-opening-port-80-443-but-limit-it-to-specific-public-ip/m-p/4146657#M1073604</link>
    <description>&lt;P&gt;You need ACL and NAT here - since we do not know your exiting config&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the high level here is config -&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;NAT&lt;/P&gt;
&lt;P&gt;object network HTTP_IN&lt;BR /&gt;host 10.10.10.10&lt;BR /&gt;nat (inside,outside) static 234.56.78.x service tcp 80 80&lt;BR /&gt;!&lt;BR /&gt;object network HTTPS_IN&lt;BR /&gt;host 10.10.10.10&lt;BR /&gt;nat (inside,outside) static 234.56.78.x service tcp 443 443&lt;BR /&gt;!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ACL to Permit&lt;/P&gt;
&lt;P&gt;access-list Out2In permit tcp any host 10.10.10.10 eq 80&lt;BR /&gt;access-list Out2In permit tcp any host 10.10.10.10 eq 443&lt;BR /&gt;!&lt;BR /&gt;access-group Out2In in interface outside&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Test and advise&lt;/P&gt;</description>
    <pubDate>Fri, 04 Sep 2020 20:29:54 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2020-09-04T20:29:54Z</dc:date>
    <item>
      <title>Cisco Asa : Opening Port 80,443 but limit it to specific Public IP's</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-opening-port-80-443-but-limit-it-to-specific-public-ip/m-p/4146646#M1073603</link>
      <description>&lt;P&gt;Hello Experst&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/286878"&gt;@balaji.bandi&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;private IP: 10.10.10.10&lt;/P&gt;&lt;P&gt;Public IP: 234.56.78.x&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to map Private IP to Public IP for Port 80 and 443 but need to limit to specific Public IPs. Please help me accomplishing that.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;</description>
      <pubDate>Fri, 04 Sep 2020 20:12:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-opening-port-80-443-but-limit-it-to-specific-public-ip/m-p/4146646#M1073603</guid>
      <dc:creator>LovejitSingh1313</dc:creator>
      <dc:date>2020-09-04T20:12:04Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Asa : Opening Port 80,443 but limit it to specific Public IP's</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-opening-port-80-443-but-limit-it-to-specific-public-ip/m-p/4146657#M1073604</link>
      <description>&lt;P&gt;You need ACL and NAT here - since we do not know your exiting config&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the high level here is config -&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;NAT&lt;/P&gt;
&lt;P&gt;object network HTTP_IN&lt;BR /&gt;host 10.10.10.10&lt;BR /&gt;nat (inside,outside) static 234.56.78.x service tcp 80 80&lt;BR /&gt;!&lt;BR /&gt;object network HTTPS_IN&lt;BR /&gt;host 10.10.10.10&lt;BR /&gt;nat (inside,outside) static 234.56.78.x service tcp 443 443&lt;BR /&gt;!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ACL to Permit&lt;/P&gt;
&lt;P&gt;access-list Out2In permit tcp any host 10.10.10.10 eq 80&lt;BR /&gt;access-list Out2In permit tcp any host 10.10.10.10 eq 443&lt;BR /&gt;!&lt;BR /&gt;access-group Out2In in interface outside&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Test and advise&lt;/P&gt;</description>
      <pubDate>Fri, 04 Sep 2020 20:29:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-opening-port-80-443-but-limit-it-to-specific-public-ip/m-p/4146657#M1073604</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-09-04T20:29:54Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Asa : Opening Port 80,443 but limit it to specific Public IP's</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-opening-port-80-443-but-limit-it-to-specific-public-ip/m-p/4148038#M1073697</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/286878"&gt;@balaji.bandi&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Its running on 8.2 Version and i think this OS needs bit different commands. Any help will be appreciated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 08 Sep 2020 20:22:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-opening-port-80-443-but-limit-it-to-specific-public-ip/m-p/4148038#M1073697</guid>
      <dc:creator>LovejitSingh1313</dc:creator>
      <dc:date>2020-09-08T20:22:29Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Asa : Opening Port 80,443 but limit it to specific Public IP's</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-opening-port-80-443-but-limit-it-to-specific-public-ip/m-p/4148079#M1073700</link>
      <description>&lt;P&gt;you can try below syntax (8.2 is too old used may be 8+years back).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;static (inside,outside) tcp 234.56.78.x www 10.10.10.10 www netmask 255.255.255.255&lt;BR /&gt;static (inside,outside) tcp 234.56.78.x https 10.10.10.10 https netmask 255.255.255.255&lt;/P&gt;
&lt;P&gt;or&lt;/P&gt;
&lt;P&gt;static (inside,outside) tcp 234.56.78.x 80 10.10.10.10 80&lt;BR /&gt;static (inside,outside) tcp 234.56.78.x 443 10.10.10.10 443&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;ACL&lt;/P&gt;
&lt;P&gt;access-list Out_IN permit tcp any host 234.56.78.x eq 480&lt;BR /&gt;access-list Out_IN permit tcp any host 234.56.78.x eq 443&lt;/P&gt;</description>
      <pubDate>Tue, 08 Sep 2020 22:09:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-opening-port-80-443-but-limit-it-to-specific-public-ip/m-p/4148079#M1073700</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-09-08T22:09:44Z</dc:date>
    </item>
  </channel>
</rss>

