<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic So the clients are meant to in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-pix-is-giving-me-hell-please-help/m-p/2617520#M195182</link>
    <description>&lt;P&gt;&lt;EM&gt;Have only the Client X and Y connect to the IP 172.16.48.X which is Natted to 194.78.166.82&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Do you mean the above or do you mean the clients are meant to connect to 194.78.166.82 and then that is translated to 172.16.48.50 ?&lt;/P&gt;&lt;P&gt;I ask because your static is from inside to outside and your acl is applied to the outside interface so I assume you mean the clients connect from outside and you translate the IP to 172.16.48.x which is on the inside ?&lt;/P&gt;&lt;P&gt;If so your acl is wrong.&lt;/P&gt;&lt;P&gt;You need to use the public IP in the acl not the private IP&amp;nbsp;of the server.&lt;/P&gt;&lt;P&gt;If I have misunderstood please clarify.&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
    <pubDate>Thu, 09 Apr 2015 11:50:40 GMT</pubDate>
    <dc:creator>Jon Marshall</dc:creator>
    <dc:date>2015-04-09T11:50:40Z</dc:date>
    <item>
      <title>Cisco PIX is giving me Hell Please Help</title>
      <link>https://community.cisco.com/t5/network-security/cisco-pix-is-giving-me-hell-please-help/m-p/2617519#M195181</link>
      <description>&lt;P&gt;Hello People&lt;/P&gt;&lt;P&gt;When I accepted a new assignment I had no Idea these guys still housed a CISCO PIX 6.3(5) which I havent played with for years&lt;BR /&gt;All im trying to do is mimic existing configuration albeit changing IP address&lt;/P&gt;&lt;P&gt;The request is simple but Im not having any joy from the end client who cant connect.&lt;/P&gt;&lt;P&gt;Create a NAT between 172.16.48.X and 194.78.166.82 in the Belgium PIX.&lt;BR /&gt;Open the ports 80 and 443.&lt;BR /&gt;The connections will be accepted ONLY from the following IPs:&lt;BR /&gt;-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; aa.bb.cc.195 (client X)&lt;BR /&gt;-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; aa.bb.cc.184 (client Y)&lt;/P&gt;&lt;P&gt;Have only the Client X and Y connect to the IP 172.16.48.X which is Natted to 194.78.166.82&lt;/P&gt;&lt;P&gt;I created the NAT as per below&lt;/P&gt;&lt;P&gt;static (inside,outside) 194.78.166.82 172.16.48.50 netmask 255.255.255.255 0 0&lt;/P&gt;&lt;P&gt;and permitted ACLS for Client X and Y&lt;/P&gt;&lt;P&gt;access-list Outside_access_in permit tcp host aa.bb.cc.195 host 172.16.48.50 eq www&lt;BR /&gt;access-list Outside_access_in permit tcp host aa.bb.cc.195 host 172.16.48.50 eq https&lt;BR /&gt;access-list Outside_access_in permit tcp host aa.bb.cc.184 host 172.16.48.50 eq www&lt;BR /&gt;access-list Outside_access_in permit tcp host aa.bb.cc.184 host 172.16.48.50 eq https&lt;/P&gt;&lt;P&gt;I have a default route on the PIX for&lt;BR /&gt;outside 0.0.0.0 0.0.0.0 81.246.53.xx 1 OTHER static&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have simply copied existing configurations but im getting no joy from the remote client. Do i need anything else to configure? PLEASE HELP ME&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:45:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-pix-is-giving-me-hell-please-help/m-p/2617519#M195181</guid>
      <dc:creator>avnishvyas1976</dc:creator>
      <dc:date>2019-03-12T05:45:12Z</dc:date>
    </item>
    <item>
      <title>So the clients are meant to</title>
      <link>https://community.cisco.com/t5/network-security/cisco-pix-is-giving-me-hell-please-help/m-p/2617520#M195182</link>
      <description>&lt;P&gt;&lt;EM&gt;Have only the Client X and Y connect to the IP 172.16.48.X which is Natted to 194.78.166.82&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Do you mean the above or do you mean the clients are meant to connect to 194.78.166.82 and then that is translated to 172.16.48.50 ?&lt;/P&gt;&lt;P&gt;I ask because your static is from inside to outside and your acl is applied to the outside interface so I assume you mean the clients connect from outside and you translate the IP to 172.16.48.x which is on the inside ?&lt;/P&gt;&lt;P&gt;If so your acl is wrong.&lt;/P&gt;&lt;P&gt;You need to use the public IP in the acl not the private IP&amp;nbsp;of the server.&lt;/P&gt;&lt;P&gt;If I have misunderstood please clarify.&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Thu, 09 Apr 2015 11:50:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-pix-is-giving-me-hell-please-help/m-p/2617520#M195182</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-04-09T11:50:40Z</dc:date>
    </item>
    <item>
      <title>Hi Jon Marshall Thanks for</title>
      <link>https://community.cisco.com/t5/network-security/cisco-pix-is-giving-me-hell-please-help/m-p/2617521#M195183</link>
      <description>&lt;P&gt;Hi Jon Marshall&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your input and yes you are correct. I had to change the ACL to use the public IP instead of the private, that has got me a few times with NAT on different platforms but really appreciate your input.&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;AV&lt;/P&gt;</description>
      <pubDate>Thu, 09 Apr 2015 13:00:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-pix-is-giving-me-hell-please-help/m-p/2617521#M195183</guid>
      <dc:creator>avnishvyas1976</dc:creator>
      <dc:date>2015-04-09T13:00:49Z</dc:date>
    </item>
  </channel>
</rss>

