<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi Jmoritz,You should add a in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/tcp-access-denied-by-acl/m-p/2596980#M205554</link>
    <description>&lt;P&gt;Hi Jmoritz,&lt;/P&gt;&lt;P&gt;You should add a nat statement for the object network milestone:&lt;/P&gt;&lt;P&gt;object network milestone&lt;BR /&gt;&amp;nbsp; nat (inside,outside) static interface service tcp 80 80&lt;/P&gt;&lt;P&gt;By doing so host 10.1.33.238 would be natted to the outside interfce, so any connection on port 80 on the outside interface would be forwarded to it on port 80.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Aref&lt;/P&gt;</description>
    <pubDate>Thu, 30 Oct 2014 21:37:52 GMT</pubDate>
    <dc:creator>Aref Alsouqi</dc:creator>
    <dc:date>2014-10-30T21:37:52Z</dc:date>
    <item>
      <title>TCP access denied by ACL</title>
      <link>https://community.cisco.com/t5/network-security/tcp-access-denied-by-acl/m-p/2596979#M205553</link>
      <description>&lt;P&gt;I have a security camera server with a web interface that formerly used a port forward in the service provider's modem/router to allow access to this interface from the internet. A 5505 ASA was installed after the modem to create a VPN to allow remote support. The VPN is configured and operational, but the web interface is no longer accessible. This site also has only one public IP address, and the server is on the only subnet that is configured.&lt;/P&gt;&lt;P&gt;The port forward was removed from the ISP modem/router, and I have configured port forwarding to the server on port 80. I also have configured an ACL to allow access from the outside to port 80. However, when attempting to access the server the logging shows:&lt;/P&gt;&lt;P&gt;TCP access denied by ACL from X.X.X.X/51945 to outside:X.X.X.X/80&lt;/P&gt;&lt;P&gt;I have attached my config file, please take a look and see what is causing this issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Jason&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:00:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-access-denied-by-acl/m-p/2596979#M205553</guid>
      <dc:creator>jmoritz99</dc:creator>
      <dc:date>2019-03-12T05:00:55Z</dc:date>
    </item>
    <item>
      <title>Hi Jmoritz,You should add a</title>
      <link>https://community.cisco.com/t5/network-security/tcp-access-denied-by-acl/m-p/2596980#M205554</link>
      <description>&lt;P&gt;Hi Jmoritz,&lt;/P&gt;&lt;P&gt;You should add a nat statement for the object network milestone:&lt;/P&gt;&lt;P&gt;object network milestone&lt;BR /&gt;&amp;nbsp; nat (inside,outside) static interface service tcp 80 80&lt;/P&gt;&lt;P&gt;By doing so host 10.1.33.238 would be natted to the outside interfce, so any connection on port 80 on the outside interface would be forwarded to it on port 80.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Aref&lt;/P&gt;</description>
      <pubDate>Thu, 30 Oct 2014 21:37:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-access-denied-by-acl/m-p/2596980#M205554</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2014-10-30T21:37:52Z</dc:date>
    </item>
    <item>
      <title>Aref,I entered the commands</title>
      <link>https://community.cisco.com/t5/network-security/tcp-access-denied-by-acl/m-p/2596981#M205555</link>
      <description>&lt;P&gt;Aref,&lt;/P&gt;&lt;P&gt;I entered the commands as you suggested, but still getting the same results. Is there anything else that I can do?&lt;/P&gt;</description>
      <pubDate>Fri, 31 Oct 2014 13:02:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-access-denied-by-acl/m-p/2596981#M205555</guid>
      <dc:creator>jmoritz99</dc:creator>
      <dc:date>2014-10-31T13:02:47Z</dc:date>
    </item>
    <item>
      <title>Try to clear the xlate table</title>
      <link>https://community.cisco.com/t5/network-security/tcp-access-denied-by-acl/m-p/2596982#M205556</link>
      <description>&lt;P&gt;Try to clear the xlate table and local host table with these commands and try again, and please remember that the ip address of the server on the access list has to be the real "private" ip address:&lt;/P&gt;&lt;P&gt;clear xlate&lt;/P&gt;&lt;P&gt;clear local-host&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Aref&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 31 Oct 2014 16:00:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-access-denied-by-acl/m-p/2596982#M205556</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2014-10-31T16:00:25Z</dc:date>
    </item>
  </channel>
</rss>

