<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic User controlled firewall\access rule. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/user-controlled-firewall-access-rule/m-p/2662554#M201551</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I'm looking for ideas on a project I'm working on.&lt;/P&gt;&lt;P&gt;We have some remote locations where we want to set up a network with 3 segments(WAN, DMZ, and LAN). DMZ is going to have limited access to WAN, and one port open to LAN. LAN is going to be blocked towards WAN.&lt;/P&gt;&lt;P&gt;But I want the user on site being able to activate a rule in the router\firewall that will let us give remote support on the LAN computers. And I want this to be as easy as possible for the user. Preferably with a physical switch, or just a few click on the computer.&lt;/P&gt;&lt;P&gt;Would something like this be able to be done on ex. 892FSP?&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Pål&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 05:34:39 GMT</pubDate>
    <dc:creator>p.nesse82</dc:creator>
    <dc:date>2019-03-12T05:34:39Z</dc:date>
    <item>
      <title>User controlled firewall\access rule.</title>
      <link>https://community.cisco.com/t5/network-security/user-controlled-firewall-access-rule/m-p/2662554#M201551</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I'm looking for ideas on a project I'm working on.&lt;/P&gt;&lt;P&gt;We have some remote locations where we want to set up a network with 3 segments(WAN, DMZ, and LAN). DMZ is going to have limited access to WAN, and one port open to LAN. LAN is going to be blocked towards WAN.&lt;/P&gt;&lt;P&gt;But I want the user on site being able to activate a rule in the router\firewall that will let us give remote support on the LAN computers. And I want this to be as easy as possible for the user. Preferably with a physical switch, or just a few click on the computer.&lt;/P&gt;&lt;P&gt;Would something like this be able to be done on ex. 892FSP?&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Pål&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:34:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/user-controlled-firewall-access-rule/m-p/2662554#M201551</guid>
      <dc:creator>p.nesse82</dc:creator>
      <dc:date>2019-03-12T05:34:39Z</dc:date>
    </item>
    <item>
      <title>Why not simply add this a</title>
      <link>https://community.cisco.com/t5/network-security/user-controlled-firewall-access-rule/m-p/2662555#M201552</link>
      <description>&lt;P&gt;Why not simply add this a rule to the firewall for your own access when you install the routers ?&lt;/P&gt;&lt;P&gt;I'm sure there is more to it but I'm not sure I would want users making changes to firewall rules.&lt;/P&gt;&lt;P&gt;You could always setup a script I suppose for the user to run&amp;nbsp;that logged into the router and allowed the necessary access temporarily and then removed it once you didn't need it any more but that seems a lot of trouble to go to when you could simply allow that access from the WAN anyway.&lt;/P&gt;&lt;P&gt;In addition if whatever you setup doesn't work for some reason then you are stuck basically.&lt;/P&gt;&lt;P&gt;It's not going to give the LAN users any access to the WAN.&lt;/P&gt;&lt;P&gt;Perhaps if you could clarify why you need it to be done this way ?&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2015 14:50:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/user-controlled-firewall-access-rule/m-p/2662555#M201552</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-03-02T14:50:50Z</dc:date>
    </item>
  </channel>
</rss>

