<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic That way it didn't work: in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000848#M150215</link>
    <description>&lt;P&gt;That way it has not worked:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;PRE class="prettyprint prettyprinted"&gt;&lt;SPAN class="kwd"&gt;object&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; network SERVER&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt; host &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;192.168&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="lit"&gt;3.10&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt; nat &lt;/SPAN&gt;&lt;SPAN class="pun"&gt;(&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;inside&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;,&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;outside&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;)&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;static&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;172.16&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="lit"&gt;255.254&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; service tcp &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pun"&gt;!&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt;access&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;-&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;list OUTSIDE&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;-&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;IN permit tcp host &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;200.x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;x &lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;object&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; SERVER eq &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;/PRE&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;So it has worked!!!&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;PRE class="prettyprint prettyprinted"&gt;&lt;SPAN class="kwd"&gt;object&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; network SERVER&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt; host &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;192.168&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="lit"&gt;3.10&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt; nat &lt;/SPAN&gt;&lt;SPAN class="pun"&gt;(&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;inside&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;,&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;outside&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;)&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;static&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;200.x.x.x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;&lt;/SPAN&gt;&lt;SPAN class="lit"&gt;&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; service tcp &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pun"&gt;!&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt;access&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;-&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;list OUTSIDE&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;-&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;IN permit tcp host &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;200.x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;x &lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;object&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; SERVER eq &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;/PRE&gt;</description>
    <pubDate>Thu, 08 Sep 2016 04:00:14 GMT</pubDate>
    <dc:creator>Rodrigo Fialho</dc:creator>
    <dc:date>2016-09-08T04:00:14Z</dc:date>
    <item>
      <title>NAT 9.4(1)</title>
      <link>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000844#M150211</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I would like to know the best way to do a NAT into ssh port:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;200.X.X.X ----&amp;gt; 172.16.255.254 ----&amp;gt; 192.168.3.10&lt;BR /&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;OUTSIDE&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp; DMZ&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; INSIDE&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;object network 200.X.X.X&lt;BR /&gt;&amp;nbsp;host 200.X.X.X&lt;BR /&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;object network 172.16.255.254&lt;BR /&gt;&amp;nbsp;host 172.16.255.254&lt;BR /&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;object network 192.168.3.10&lt;BR /&gt;&amp;nbsp;host 192.168.3.10&lt;BR /&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;object service 22&lt;BR /&gt;&amp;nbsp;service tcp source eq ssh &lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;nat (any,any) source static 172.16.255.254 &lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;200.X.X.X&lt;/SPAN&gt;&lt;/FONT&gt; destination static &lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;192.168.3.10&lt;/SPAN&gt;&lt;/FONT&gt; &lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;192.168.3.10&lt;/SPAN&gt;&lt;/FONT&gt; service 22 22&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="black" face="Times New Roman" size="3"&gt;&lt;SPAN style="font-size: 12pt;"&gt;Is this way correct? &lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:14:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000844#M150211</guid>
      <dc:creator>Rodrigo Fialho</dc:creator>
      <dc:date>2019-03-12T08:14:19Z</dc:date>
    </item>
    <item>
      <title>At least, it's far too</title>
      <link>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000845#M150212</link>
      <description>&lt;P&gt;At least, it's far too complex. This is how it can work:&lt;/P&gt;
&lt;PRE class="prettyprint"&gt;object network SERVER&lt;BR /&gt; host 192.168.3.10&lt;BR /&gt; nat (inside,outside) static 172.16.255.254 service tcp 22 22&lt;BR /&gt;!&lt;BR /&gt;access-list OUTSIDE-IN permit tcp host 200.x.x.x object SERVER eq 22&lt;/PRE&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Sep 2016 20:45:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000845#M150212</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2016-09-05T20:45:59Z</dc:date>
    </item>
    <item>
      <title>Hi Karsten,</title>
      <link>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000846#M150213</link>
      <description>&lt;P&gt;Hi &lt;SPAN class="fullname"&gt;&lt;SPAN rel="sioc:has_creator"&gt;&lt;A href="https://supportforums.cisco.com/users/karsteniwen" title="View user profile." class="username" lang="" about="/users/karsteniwen" typeof="sioc:UserAccount" property="foaf:name" datatype=""&gt;Karsten,&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="fullname"&gt;&lt;SPAN rel="sioc:has_creator"&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="fullname"&gt;&lt;SPAN rel="sioc:has_creator"&gt;Thank you for your answer.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="fullname"&gt;&lt;SPAN rel="sioc:has_creator"&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="fullname"&gt;&lt;SPAN rel="sioc:has_creator"&gt;But does it work withou ACL, just NAT?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Sep 2016 21:10:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000846#M150213</guid>
      <dc:creator>Rodrigo Fialho</dc:creator>
      <dc:date>2016-09-05T21:10:06Z</dc:date>
    </item>
    <item>
      <title>Unless you haven't configured</title>
      <link>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000847#M150214</link>
      <description>&lt;P&gt;Unless you haven't configured something really strange, you need a matching ACL-line because you are communicating from a lower to a higher security level. That is denied by default.&lt;/P&gt;</description>
      <pubDate>Mon, 05 Sep 2016 21:16:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000847#M150214</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2016-09-05T21:16:18Z</dc:date>
    </item>
    <item>
      <title>That way it didn't work:</title>
      <link>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000848#M150215</link>
      <description>&lt;P&gt;That way it has not worked:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;PRE class="prettyprint prettyprinted"&gt;&lt;SPAN class="kwd"&gt;object&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; network SERVER&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt; host &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;192.168&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="lit"&gt;3.10&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt; nat &lt;/SPAN&gt;&lt;SPAN class="pun"&gt;(&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;inside&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;,&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;outside&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;)&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;static&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;172.16&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="lit"&gt;255.254&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; service tcp &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pun"&gt;!&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt;access&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;-&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;list OUTSIDE&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;-&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;IN permit tcp host &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;200.x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;x &lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;object&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; SERVER eq &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;/PRE&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;So it has worked!!!&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;PRE class="prettyprint prettyprinted"&gt;&lt;SPAN class="kwd"&gt;object&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; network SERVER&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt; host &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;192.168&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="lit"&gt;3.10&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt; nat &lt;/SPAN&gt;&lt;SPAN class="pun"&gt;(&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;inside&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;,&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;outside&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;)&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;static&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;200.x.x.x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;&lt;/SPAN&gt;&lt;SPAN class="lit"&gt;&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; service tcp &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pun"&gt;!&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="pln"&gt;access&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;-&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;list OUTSIDE&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;-&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;IN permit tcp host &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;200.x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;x&lt;/SPAN&gt;&lt;SPAN class="pun"&gt;.&lt;/SPAN&gt;&lt;SPAN class="pln"&gt;x &lt;/SPAN&gt;&lt;SPAN class="kwd"&gt;object&lt;/SPAN&gt;&lt;SPAN class="pln"&gt; SERVER eq &lt;/SPAN&gt;&lt;SPAN class="lit"&gt;22&lt;/SPAN&gt;&lt;/PRE&gt;</description>
      <pubDate>Thu, 08 Sep 2016 04:00:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-9-4-1/m-p/3000848#M150215</guid>
      <dc:creator>Rodrigo Fialho</dc:creator>
      <dc:date>2016-09-08T04:00:14Z</dc:date>
    </item>
  </channel>
</rss>

