<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic asa-5512-x help with port forwarding using CLI or ASDM for mail server in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583405#M200699</link>
    <description>&lt;P&gt;im sure the processes is pretty simple but im going crazy,&amp;nbsp;all the videos and written tutorials i find are for older versions of ASDM or dont really apply to my situation or are just flat out confusing with the forum threads backtracking. I have a ASA 5512 and am just trying to forward the ports so i can use my exchange mail server. if someone can show me the steps&amp;nbsp;to forward ports using CLI or ASDM 7.1.3&amp;nbsp; it would be greatly appreciated.&amp;nbsp;&lt;/P&gt;&lt;P&gt;trying to forward ports: 2525 &amp;nbsp;,&amp;nbsp;&lt;FONT color="#313131" face="sans-serif"&gt;&lt;SPAN style="font-size: 14px; line-height: 21px;"&gt;465, &amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN style="color: rgb(49, 49, 49); font-family: sans-serif; font-size: 14px; line-height: 21px;"&gt;110 , 143&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;puplic IP:&amp;nbsp;99.148.78.10 (not my real ip but just easier to work with)&lt;/P&gt;&lt;P&gt;ASA 5512 device: 10.10.50.50&lt;/P&gt;&lt;P&gt;Exchange&amp;nbsp;mail server: 10.10.50.60&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;heres my conig:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ASA Version 9.1(2)&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;hostname ciscoasa&lt;BR /&gt;enable password 8Ry2YjIyt7RRXU24 encrypted&lt;BR /&gt;names&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 99.148.78.10 255.255.255.248&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.10.50.50 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/4&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/5&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;management-only&lt;BR /&gt;&amp;nbsp;nameif management&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.110.1 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;ftp mode passive&lt;BR /&gt;same-security-traffic permit inter-interface&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;object network smtptest&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;mtu management 1500&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;no arp permit-nonconnected&lt;BR /&gt;!&lt;BR /&gt;nat (inside,outside) after-auto source dynamic any interface&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 99.148.78.14 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout pat-xlate 0:00:30&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;timeout floating-conn 0:00:00&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;user-identity default-domain LOCAL&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.110.0 255.255.255.0 management&lt;BR /&gt;http 10.10.110.1 255.255.255.255 inside&lt;BR /&gt;http 10.10.110.0 255.255.255.0 inside&lt;BR /&gt;http 10.10.50.0 255.255.255.0 inside&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart&lt;BR /&gt;crypto ipsec security-association pmtu-aging infinite&lt;BR /&gt;crypto ca trustpool policy&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;ssh key-exchange group dh-group1-sha1&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd address 192.168.110.2-192.168.110.254 management&lt;BR /&gt;dhcpd enable management&lt;BR /&gt;!&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics access-list&lt;BR /&gt;no threat-detection statistics tcp-intercept&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum client auto&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 h225&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 ras&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rsh&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rtsp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect esmtp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sqlnet&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect skinny &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sunrpc&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect xdmcp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sip &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect netbios&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect tftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ip-options&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;prompt hostname context&amp;nbsp;&lt;BR /&gt;no call-home reporting anonymous&lt;BR /&gt;Cryptochecksum:2c58621a4af5137c4fd19f7edae22e19&lt;BR /&gt;: end&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 05:03:26 GMT</pubDate>
    <dc:creator>davedoggydogg</dc:creator>
    <dc:date>2019-03-12T05:03:26Z</dc:date>
    <item>
      <title>asa-5512-x help with port forwarding using CLI or ASDM for mail server</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583405#M200699</link>
      <description>&lt;P&gt;im sure the processes is pretty simple but im going crazy,&amp;nbsp;all the videos and written tutorials i find are for older versions of ASDM or dont really apply to my situation or are just flat out confusing with the forum threads backtracking. I have a ASA 5512 and am just trying to forward the ports so i can use my exchange mail server. if someone can show me the steps&amp;nbsp;to forward ports using CLI or ASDM 7.1.3&amp;nbsp; it would be greatly appreciated.&amp;nbsp;&lt;/P&gt;&lt;P&gt;trying to forward ports: 2525 &amp;nbsp;,&amp;nbsp;&lt;FONT color="#313131" face="sans-serif"&gt;&lt;SPAN style="font-size: 14px; line-height: 21px;"&gt;465, &amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN style="color: rgb(49, 49, 49); font-family: sans-serif; font-size: 14px; line-height: 21px;"&gt;110 , 143&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;puplic IP:&amp;nbsp;99.148.78.10 (not my real ip but just easier to work with)&lt;/P&gt;&lt;P&gt;ASA 5512 device: 10.10.50.50&lt;/P&gt;&lt;P&gt;Exchange&amp;nbsp;mail server: 10.10.50.60&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;heres my conig:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ASA Version 9.1(2)&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;hostname ciscoasa&lt;BR /&gt;enable password 8Ry2YjIyt7RRXU24 encrypted&lt;BR /&gt;names&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 99.148.78.10 255.255.255.248&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.10.50.50 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/4&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/5&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;management-only&lt;BR /&gt;&amp;nbsp;nameif management&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.110.1 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;ftp mode passive&lt;BR /&gt;same-security-traffic permit inter-interface&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;object network smtptest&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;mtu management 1500&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;no arp permit-nonconnected&lt;BR /&gt;!&lt;BR /&gt;nat (inside,outside) after-auto source dynamic any interface&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 99.148.78.14 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout pat-xlate 0:00:30&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;timeout floating-conn 0:00:00&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;user-identity default-domain LOCAL&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.110.0 255.255.255.0 management&lt;BR /&gt;http 10.10.110.1 255.255.255.255 inside&lt;BR /&gt;http 10.10.110.0 255.255.255.0 inside&lt;BR /&gt;http 10.10.50.0 255.255.255.0 inside&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart&lt;BR /&gt;crypto ipsec security-association pmtu-aging infinite&lt;BR /&gt;crypto ca trustpool policy&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;ssh key-exchange group dh-group1-sha1&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd address 192.168.110.2-192.168.110.254 management&lt;BR /&gt;dhcpd enable management&lt;BR /&gt;!&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics access-list&lt;BR /&gt;no threat-detection statistics tcp-intercept&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum client auto&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 h225&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 ras&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rsh&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rtsp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect esmtp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sqlnet&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect skinny &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sunrpc&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect xdmcp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sip &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect netbios&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect tftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ip-options&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;prompt hostname context&amp;nbsp;&lt;BR /&gt;no call-home reporting anonymous&lt;BR /&gt;Cryptochecksum:2c58621a4af5137c4fd19f7edae22e19&lt;BR /&gt;: end&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:03:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583405#M200699</guid>
      <dc:creator>davedoggydogg</dc:creator>
      <dc:date>2019-03-12T05:03:26Z</dc:date>
    </item>
    <item>
      <title>Hi,Try this NAT:-object</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583406#M200700</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Try this NAT:-&lt;/P&gt;&lt;P&gt;object network obj-10.10.50.60&lt;/P&gt;&lt;P&gt;host 10.10.50.60&lt;/P&gt;&lt;P&gt;nat (inside,outside) static 99.148.78.10 service tcp 2525&amp;nbsp; 2525&lt;/P&gt;&lt;P&gt;object network obj-10.10.50.60-1&lt;/P&gt;&lt;P&gt;host 10.10.50.60&lt;/P&gt;&lt;P&gt;nat (inside,outside) static 99.148.78.10 service tcp 465 465&lt;/P&gt;&lt;P&gt;object network obj-10.10.50.60-2&lt;/P&gt;&lt;P&gt;host 10.10.50.60&lt;/P&gt;&lt;P&gt;nat (inside,outside) static 99.148.78.10 service tcp 110 110&lt;/P&gt;&lt;P&gt;object network obj-10.10.50.60-3&lt;/P&gt;&lt;P&gt;host 10.10.50.60&lt;/P&gt;&lt;P&gt;nat (inside,outside) static 99.148.78.10 service tcp 143 143&lt;/P&gt;&lt;P&gt;Make sure that you have corresponding ports allowed on the ACL for the private IP.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Nov 2014 04:17:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583406#M200700</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2014-11-11T04:17:58Z</dc:date>
    </item>
    <item>
      <title>thanks but i got a error,  i</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583407#M200701</link>
      <description>&lt;P&gt;thanks but i got a error,&amp;nbsp;&amp;nbsp;i &amp;nbsp;tried&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="color: rgb(119, 119, 119); font-size: 14px; background-color: rgb(249, 249, 249);"&gt;&lt;STRONG&gt;object network obj-10.10.50.60&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="color: rgb(119, 119, 119); font-size: 14px; background-color: rgb(249, 249, 249);"&gt;&lt;STRONG&gt;host 10.10.50.60&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="color: rgb(119, 119, 119); font-size: 14px; background-color: rgb(249, 249, 249);"&gt;&lt;STRONG&gt;nat (inside,outside) static 99.148.78.10 service tcp 2525&amp;nbsp; 2525&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="color: rgb(119, 119, 119); font-size: 14px; background-color: rgb(249, 249, 249);"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;it and got the following error.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Result of the command: "nat (inside,outside) static &lt;/STRONG&gt;&lt;SPAN style="font-size: 14px; background-color: rgb(249, 249, 249);"&gt;&lt;STRONG&gt;99.148.78.10&lt;/STRONG&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt; service tcp 2525 &amp;nbsp;2525"&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;ERROR: Address &lt;/STRONG&gt;&lt;SPAN style="font-size: 14px; background-color: rgb(249, 249, 249);"&gt;&lt;STRONG&gt;99.148.78.10&lt;/STRONG&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt; overlaps with outside interface address.&lt;BR /&gt;ERROR: NAT Policy is not downloaded&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;any ideas?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Nov 2014 15:38:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583407#M200701</guid>
      <dc:creator>davedoggydogg</dc:creator>
      <dc:date>2014-11-11T15:38:24Z</dc:date>
    </item>
    <item>
      <title>i dont know what i did, but</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583408#M200702</link>
      <description>&lt;P&gt;i dont know what i did, but between these extra commands i got the ports to forward&amp;nbsp;:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;object network obj-10.10.50.60-&lt;SPAN style="color:#00FF00;"&gt;1&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;host 10.10.50.60&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (inside,outside) static interface service tcp&amp;nbsp;&lt;SPAN style="color:#FF0000;"&gt;80 80&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network INSIDE&lt;BR /&gt;nat (inside,outside) dynamic interface&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network MULTI-SERVER&lt;BR /&gt;nat (inside,outside) static interface service tcp &lt;SPAN style="color:#FF0000;"&gt;80 80&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;access-list Outside_access_in extended permit tcp any object MULTI-SERVER eq &lt;SPAN style="color:#FF0000;"&gt;80&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;access-group Outside_access_in in interface Outside&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;object network obj-10.10.50.60-&lt;FONT color="#00ff00"&gt;2&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;host 10.10.50.60&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (inside,outside) static interface service tcp &lt;FONT color="#ff0000"&gt;110 110&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network INSIDE&lt;BR /&gt;nat (inside,outside) dynamic interface&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network MULTI-SERVER&lt;BR /&gt;nat (inside,outside) static interface service tcp &lt;FONT color="#ff0000"&gt;110 110&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;access-list Outside_access_in extended permit tcp any object MULTI-SERVER eq &lt;FONT color="#ff0000"&gt;110&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;access-group Outside_access_in in interface Outside&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;object network obj-10.10.50.60-&lt;FONT color="#00ff00"&gt;3&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;host 10.10.50.60&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (inside,outside) static interface service tcp &lt;FONT color="#ff0000"&gt;995 995&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network INSIDE&lt;BR /&gt;nat (inside,outside) dynamic interface&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network MULTI-SERVER&lt;BR /&gt;nat (inside,outside) static interface service tcp &lt;FONT color="#ff0000"&gt;995 995&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;access-list Outside_access_in extended permit tcp any object MULTI-SERVER eq &lt;FONT color="#ff0000"&gt;995&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;access-group Outside_access_in in interface Outside&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;im sure the commands/coding/scripting can be cleaned up, but this worked for me.&lt;/P&gt;&lt;P&gt;thanks&amp;nbsp;&lt;A about="/users/vamrodia" class="username" datatype="" href="https://supportforums.cisco.com/users/vamrodia" property="foaf:name" style="background-color: rgb(249, 249, 249);" title="View user profile." typeof="sioc:UserAccount" lang=""&gt;Vibhor Amrodia&lt;/A&gt;&amp;nbsp;for your time and help!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;(note for others as reference)&lt;/P&gt;&lt;P&gt;the ports&amp;nbsp;in&amp;nbsp;&lt;SPAN style="color:#FF0000;"&gt;red&lt;/SPAN&gt; i changed accordingly ... eg 80,110,25, etc&lt;/P&gt;&lt;P&gt;the &lt;SPAN style="color:#00FF00;"&gt;neon green &lt;/SPAN&gt;1 changed for every rule i added... eg: 1,2,3,4,5, etc&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;for others that need help with similar situation &amp;nbsp;here&amp;nbsp;is a great reference website that helped me alot with setting port forwarding , internet sharing , and NAT&amp;nbsp;/ PAT &amp;nbsp;on the ASA 5512-x , im sure it works with the updated asa 5505&amp;nbsp;as well running 8.3+&lt;/P&gt;&lt;P&gt;&lt;A href="https://rowell.dionicio.net/configuring-nat-for-a-public-server-using-same-outside-interface/"&gt;https://rowell.dionicio.net/configuring-nat-for-a-public-server-using-same-outside-interface/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Nov 2014 22:31:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583408#M200702</guid>
      <dc:creator>davedoggydogg</dc:creator>
      <dc:date>2014-11-11T22:31:38Z</dc:date>
    </item>
    <item>
      <title>Hi,It's great that I was able</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583409#M200703</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;It's great that I was able to help.&lt;/P&gt;&lt;P&gt;If the issue is resolved , please mark the appropriate response as the answer for this thread.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Wed, 12 Nov 2014 10:29:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583409#M200703</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2014-11-12T10:29:16Z</dc:date>
    </item>
    <item>
      <title>sure thing, ill give you the</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583410#M200704</link>
      <description>&lt;P&gt;sure thing, ill give you&amp;nbsp;the credit and correct answer, so it can help others in the future ....can u copy and paste my previous&amp;nbsp;post and. i will mark that as correct, thanks again.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2014 17:16:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583410#M200704</guid>
      <dc:creator>davedoggydogg</dc:creator>
      <dc:date>2014-11-13T17:16:25Z</dc:date>
    </item>
    <item>
      <title>Here you go:-i dont know what</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583411#M200705</link>
      <description>&lt;P&gt;Here you go:-&lt;/P&gt;&lt;P&gt;i dont know what i did, but between these extra commands i got the ports to forward&amp;nbsp;:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;object network obj-10.10.50.60-&lt;SPAN style="color:#00FF00"&gt;1&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;host 10.10.50.60&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (inside,outside) static interface service tcp&amp;nbsp;&lt;SPAN style="color:#FF0000"&gt;80 80&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network INSIDE&lt;BR /&gt;nat (inside,outside) dynamic interface&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network MULTI-SERVER&lt;BR /&gt;nat (inside,outside) static interface service tcp &lt;SPAN style="color:#FF0000"&gt;80 80&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;access-list Outside_access_in extended permit tcp any object MULTI-SERVER eq &lt;SPAN style="color:#FF0000"&gt;80&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;access-group Outside_access_in in interface Outside&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;object network obj-10.10.50.60-&lt;FONT color="#00ff00"&gt;2&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;host 10.10.50.60&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (inside,outside) static interface service tcp &lt;FONT color="#ff0000"&gt;110 110&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network INSIDE&lt;BR /&gt;nat (inside,outside) dynamic interface&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network MULTI-SERVER&lt;BR /&gt;nat (inside,outside) static interface service tcp &lt;FONT color="#ff0000"&gt;110 110&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;access-list Outside_access_in extended permit tcp any object MULTI-SERVER eq &lt;FONT color="#ff0000"&gt;110&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;access-group Outside_access_in in interface Outside&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;object network obj-10.10.50.60-&lt;FONT color="#00ff00"&gt;3&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;host 10.10.50.60&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (inside,outside) static interface service tcp &lt;FONT color="#ff0000"&gt;995 995&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network INSIDE&lt;BR /&gt;nat (inside,outside) dynamic interface&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;object network MULTI-SERVER&lt;BR /&gt;nat (inside,outside) static interface service tcp &lt;FONT color="#ff0000"&gt;995 995&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;access-list Outside_access_in extended permit tcp any object MULTI-SERVER eq &lt;FONT color="#ff0000"&gt;995&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;access-group Outside_access_in in interface Outside&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;im sure the commands/coding/scripting can be cleaned up, but this worked for me.&lt;/P&gt;&lt;P&gt;thanks&amp;nbsp;&lt;A href="https://supportforums.cisco.com/users/vamrodia" title="View user profile."&gt;Vibhor Amrodia&lt;/A&gt;&amp;nbsp;for your time and help!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;(note for others as reference)&lt;/P&gt;&lt;P&gt;the ports&amp;nbsp;in&amp;nbsp;&lt;SPAN style="color:#FF0000"&gt;red&lt;/SPAN&gt; i changed accordingly ... eg 80,110,25, etc&lt;/P&gt;&lt;P&gt;the &lt;SPAN style="color:#00FF00"&gt;neon green &lt;/SPAN&gt;1 changed for every rule i added... eg: 1,2,3,4,5, etc&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;for others that need help with similar situation &amp;nbsp;here&amp;nbsp;is a great reference website that helped me alot with setting port forwarding , internet sharing , and NAT&amp;nbsp;/ PAT &amp;nbsp;on the ASA 5512-x , im sure it works with the updated asa 5505&amp;nbsp;as well running 8.3+&lt;/P&gt;&lt;P&gt;&lt;A href="https://rowell.dionicio.net/configuring-nat-for-a-public-server-using-same-outside-interface/" rel="nofollow"&gt;https://rowell.dionicio.net/configuring-nat-for-a-public-server-using-same-outside-interface/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Nov 2014 10:39:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-x-help-with-port-forwarding-using-cli-or-asdm-for-mail/m-p/2583411#M200705</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2014-11-14T10:39:36Z</dc:date>
    </item>
  </channel>
</rss>

