<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi,If I understand it in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623350#M195730</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;If I understand it correctly , I think we are trying to allow the Outbound traffic to the Access point through the ASA device.&lt;/P&gt;&lt;P&gt;I think this ACL is applied on the inside interface:-&lt;/P&gt;&lt;P&gt;access-list acl-outside extended permit tcp host 172.16.10.8 eq 8443 any&lt;/P&gt;&lt;P&gt;In that case , I see that ACE is incorrect:-&lt;/P&gt;&lt;P&gt;access-list acl-outside extended permit tcp host 172.16.10.8 any eq 8443&lt;/P&gt;&lt;P&gt;Allow the Source IP which you want as per the requirement.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
    <pubDate>Tue, 24 Mar 2015 11:06:25 GMT</pubDate>
    <dc:creator>Vibhor Amrodia</dc:creator>
    <dc:date>2015-03-24T11:06:25Z</dc:date>
    <item>
      <title>Extended Access List</title>
      <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623347#M195727</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am testing a cloud access point and I think Asa5505 is blocking external 8443 to access the cloud portal.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i tried to create an access point to allow the access point from internal to external but i seem to be struggling to get it working, not sure where to check. I created the access list something like this.&lt;/P&gt;&lt;P&gt;access-list acl-outside extended permit tcp host 172.16.10.8 eq 8443 any&lt;/P&gt;&lt;P&gt;not sure where I am going wrong?&lt;/P&gt;&lt;P&gt;Appreciate your help.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:40:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623347#M195727</guid>
      <dc:creator>Mohammed Yusuf</dc:creator>
      <dc:date>2019-03-12T05:40:55Z</dc:date>
    </item>
    <item>
      <title>Need a bit more information</title>
      <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623348#M195728</link>
      <description>&lt;P&gt;Need a bit more information than that.&lt;/P&gt;&lt;P&gt;What is trying to access what ie. source and destination IPs and port numbers.&lt;/P&gt;&lt;P&gt;Plus please post configuration of your ASA.&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Sun, 22 Mar 2015 20:44:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623348#M195728</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-03-22T20:44:12Z</dc:date>
    </item>
    <item>
      <title>Hey Jon,The source port could</title>
      <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623349#M195729</link>
      <description>&lt;P&gt;Hey Jon,&lt;/P&gt;&lt;P&gt;The source port could be anything. I am trying to reach to&amp;nbsp;&lt;/P&gt;&lt;P&gt;https://003.unificloud.co.uk:8443/&amp;nbsp;&lt;/P&gt;&lt;P&gt;and I only want to allow only 2 or 3 Access point,&lt;/P&gt;</description>
      <pubDate>Mon, 23 Mar 2015 07:46:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623349#M195729</guid>
      <dc:creator>Mohammed Yusuf</dc:creator>
      <dc:date>2015-03-23T07:46:37Z</dc:date>
    </item>
    <item>
      <title>Hi,If I understand it</title>
      <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623350#M195730</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;If I understand it correctly , I think we are trying to allow the Outbound traffic to the Access point through the ASA device.&lt;/P&gt;&lt;P&gt;I think this ACL is applied on the inside interface:-&lt;/P&gt;&lt;P&gt;access-list acl-outside extended permit tcp host 172.16.10.8 eq 8443 any&lt;/P&gt;&lt;P&gt;In that case , I see that ACE is incorrect:-&lt;/P&gt;&lt;P&gt;access-list acl-outside extended permit tcp host 172.16.10.8 any eq 8443&lt;/P&gt;&lt;P&gt;Allow the Source IP which you want as per the requirement.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Tue, 24 Mar 2015 11:06:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623350#M195730</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-03-24T11:06:25Z</dc:date>
    </item>
    <item>
      <title>Hi, I tried your suggestion</title>
      <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623351#M195731</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I tried your suggestion&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14.3999996185303px;"&gt;access-list acl-outside extended permit tcp host 172.16.10.8 any eq 8443&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14.3999996185303px;"&gt;It does not seem to work. where can I see or troubleshoot?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14.3999996185303px;"&gt;Thanks,&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 24 Mar 2015 12:59:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623351#M195731</guid>
      <dc:creator>Mohammed Yusuf</dc:creator>
      <dc:date>2015-03-24T12:59:06Z</dc:date>
    </item>
    <item>
      <title>Hi ,I think the easiest way</title>
      <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623352#M195732</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;I think the easiest way would be test the policies using the packet tracer command on the AS device.&lt;/P&gt;&lt;P&gt;Refer:-&lt;/P&gt;&lt;P&gt;https://supportforums.cisco.com/document/29601/troubleshooting-access-problems-using-packet-tracer&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Tue, 24 Mar 2015 13:14:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623352#M195732</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-03-24T13:14:07Z</dc:date>
    </item>
    <item>
      <title>I got this error on the</title>
      <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623353#M195733</link>
      <description>&lt;P&gt;I got this error on the packet tracer.&lt;/P&gt;</description>
      <pubDate>Mon, 30 Mar 2015 19:04:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623353#M195733</guid>
      <dc:creator>Mohammed Yusuf</dc:creator>
      <dc:date>2015-03-30T19:04:28Z</dc:date>
    </item>
    <item>
      <title>Is Vibhor correct ie. you are</title>
      <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623354#M195734</link>
      <description>&lt;P&gt;Is Vibhor correct ie. you are trying to allow traffic from the inside of your ASA to the outside.&lt;/P&gt;&lt;P&gt;Can you confirm that is what you are trying to do ?&lt;/P&gt;&lt;P&gt;If so can you run this at the CLI and post results together with your ASA configuration -&lt;/P&gt;&lt;P&gt;"packet-tracer input inside tcp 172.16.10.8 12345 &amp;lt;public IP&amp;gt; 8443"&lt;/P&gt;&lt;P&gt;where the public IP is the one you are trying to connect to.&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Mon, 30 Mar 2015 19:16:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623354#M195734</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-03-30T19:16:59Z</dc:date>
    </item>
    <item>
      <title>Hi Jon,I am only trying to</title>
      <link>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623355#M195735</link>
      <description>&lt;P&gt;Hi Jon,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;I am only trying to access this site&lt;/P&gt;&lt;P&gt;&lt;A href="https://003.unificloud.co.uk:8443"&gt;https://003.unificloud.co.uk:8443&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I can ping it but unable to access on port 8443.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Apr 2015 11:49:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/extended-access-list/m-p/2623355#M195735</guid>
      <dc:creator>Mohammed Yusuf</dc:creator>
      <dc:date>2015-04-02T11:49:52Z</dc:date>
    </item>
  </channel>
</rss>

