<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi , Thanks  for  the reply.  in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438477#M268367</link>
    <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&amp;nbsp; for&amp;nbsp; the reply.&amp;nbsp; The&amp;nbsp; DMZ&amp;nbsp; server is&amp;nbsp; accessable&amp;nbsp; from internet. But&amp;nbsp; still the server&amp;nbsp; unable&amp;nbsp; to access from&amp;nbsp; Inside&amp;nbsp; interface. Encloesd&amp;nbsp; please&amp;nbsp; find&amp;nbsp; my&amp;nbsp; ASA config&amp;nbsp; and&amp;nbsp; help .&lt;/P&gt;&lt;P&gt;Does&amp;nbsp; it&amp;nbsp; need&amp;nbsp; any&amp;nbsp; routing also.?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Saroj&lt;/P&gt;</description>
    <pubDate>Tue, 18 Mar 2014 07:11:00 GMT</pubDate>
    <dc:creator>saroj pradhan</dc:creator>
    <dc:date>2014-03-18T07:11:00Z</dc:date>
    <item>
      <title>DMZ  Zone</title>
      <link>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438473#M268363</link>
      <description>&lt;P&gt;Hi&amp;nbsp; ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i have&amp;nbsp; created&amp;nbsp; a&amp;nbsp; DMZ&amp;nbsp; Zone&amp;nbsp; on the cisco ASA 5510 Firewall.&amp;nbsp; The&amp;nbsp; DMZ&amp;nbsp; is&amp;nbsp; using public&amp;nbsp; IP Address .&lt;/P&gt;&lt;P&gt;able&amp;nbsp; to&amp;nbsp; access internet from the DMZ Zone. But&amp;nbsp;&amp;nbsp; unable&amp;nbsp; to&amp;nbsp;&amp;nbsp; access the server from&amp;nbsp; inside to the dmz zone.&lt;/P&gt;&lt;P&gt;please suggest command&amp;nbsp; to&amp;nbsp; allow&amp;nbsp; access of&amp;nbsp; the inside&amp;nbsp; network&amp;nbsp; to&amp;nbsp; the dmz&amp;nbsp; network,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Saroj&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also&amp;nbsp; please suggest&amp;nbsp;&amp;nbsp; allow&amp;nbsp; from&amp;nbsp; internet&amp;nbsp; access the dmz&amp;nbsp; server.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Saroj&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 03:56:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438473#M268363</guid>
      <dc:creator>saroj pradhan</dc:creator>
      <dc:date>2019-03-12T03:56:08Z</dc:date>
    </item>
    <item>
      <title>If you have an ACL on the</title>
      <link>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438474#M268364</link>
      <description>&lt;OL&gt;&lt;LI&gt;If you have an ACL on the inside interface, then you need an ACE for the traffic.&lt;/LI&gt;&lt;LI&gt;The traffic from inside to the DMZ has to be exempted from NAT. The config-syntax depends on the version of the ASA, but you don't tell us which version you are running.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;For ASA up to 8.2:&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/nat_bypassing.html#wp1077621"&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/nat_bypassing.html#wp1077621&lt;/A&gt;&lt;/P&gt;&lt;P&gt;For ASA 8.3+:&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/security/asa/asa90/configuration/guide/asa_90_cli_config/nat_rules.html#wp1232160"&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa90/configuration/guide/asa_90_cli_config/nat_rules.html#wp1232160&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Mar 2014 07:12:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438474#M268364</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2014-03-13T07:12:15Z</dc:date>
    </item>
    <item>
      <title>Hi ,</title>
      <link>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438475#M268365</link>
      <description>Hi ,

as  i am using Public ip  address of  the server in the DMZ Zone.
please  suggest  command  to  allow  from internet  the access of  server.

Regards,
Saroj</description>
      <pubDate>Thu, 13 Mar 2014 10:39:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438475#M268365</guid>
      <dc:creator>saroj pradhan</dc:creator>
      <dc:date>2014-03-13T10:39:24Z</dc:date>
    </item>
    <item>
      <title>The following ACL allows any</title>
      <link>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438476#M268366</link>
      <description>&lt;P&gt;The following ACL allows any HTTP- and HTTPS-traffic to your DMZ-server (192.0.2.80 in my example):&lt;/P&gt;&lt;P&gt;&lt;CODE&gt;access-list OUTSIDE-IN permit tcp any host 192.0.2.80 eq 80&lt;/CODE&gt;&lt;/P&gt;&lt;P&gt;&lt;CODE&gt;access-list OUTSIDE-IN permit tcp any host 192.0.2.80 eq 443&lt;/CODE&gt;&lt;/P&gt;&lt;P&gt;That ACL needs to be applied to the outside interface:&lt;/P&gt;&lt;P&gt;&lt;CODE&gt;access-group OUTSIDE-IN in interface outside&lt;/CODE&gt;&lt;/P&gt;&lt;P&gt;If there is already an ACL on the outside interface, that use that ACL instead.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Mar 2014 12:33:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438476#M268366</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2014-03-13T12:33:30Z</dc:date>
    </item>
    <item>
      <title>Hi , Thanks  for  the reply. </title>
      <link>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438477#M268367</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&amp;nbsp; for&amp;nbsp; the reply.&amp;nbsp; The&amp;nbsp; DMZ&amp;nbsp; server is&amp;nbsp; accessable&amp;nbsp; from internet. But&amp;nbsp; still the server&amp;nbsp; unable&amp;nbsp; to access from&amp;nbsp; Inside&amp;nbsp; interface. Encloesd&amp;nbsp; please&amp;nbsp; find&amp;nbsp; my&amp;nbsp; ASA config&amp;nbsp; and&amp;nbsp; help .&lt;/P&gt;&lt;P&gt;Does&amp;nbsp; it&amp;nbsp; need&amp;nbsp; any&amp;nbsp; routing also.?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Saroj&lt;/P&gt;</description>
      <pubDate>Tue, 18 Mar 2014 07:11:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438477#M268367</guid>
      <dc:creator>saroj pradhan</dc:creator>
      <dc:date>2014-03-18T07:11:00Z</dc:date>
    </item>
    <item>
      <title>Hi, now  i have  configured </title>
      <link>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438478#M268368</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;now&amp;nbsp; i have&amp;nbsp; configured&amp;nbsp; the nat&amp;nbsp; exampt&amp;nbsp; and&amp;nbsp; able&amp;nbsp; to&amp;nbsp; ping&amp;nbsp; the DMZ Server from&amp;nbsp; Inside&amp;nbsp; of&amp;nbsp; the ASA Fireawll&amp;nbsp; but&amp;nbsp; unable&amp;nbsp; to&amp;nbsp; access the Server on&amp;nbsp; port 80.&lt;/P&gt;&lt;P&gt;please advice.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Saroj&lt;/P&gt;</description>
      <pubDate>Tue, 18 Mar 2014 10:27:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438478#M268368</guid>
      <dc:creator>saroj pradhan</dc:creator>
      <dc:date>2014-03-18T10:27:41Z</dc:date>
    </item>
    <item>
      <title>Hi  ,i am  trying  to access</title>
      <link>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438479#M268369</link>
      <description>&lt;P&gt;Hi&amp;nbsp; ,&lt;/P&gt;&lt;P&gt;i am&amp;nbsp; trying&amp;nbsp; to access the web server&amp;nbsp; 122.168.191.226&amp;nbsp;&amp;nbsp; from&amp;nbsp; my PC 172.16.48.111&amp;nbsp; on port&amp;nbsp; but&amp;nbsp; unable&amp;nbsp;&amp;nbsp; to&amp;nbsp; access .i&amp;nbsp; run a&amp;nbsp; command&amp;nbsp; packet-tracer input inside tcp 172.16.48.111 12345 122.168.191.226 80&amp;nbsp; .Encloesd&amp;nbsp; the report&amp;nbsp; and&amp;nbsp; please advice.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Saroj&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 18 Mar 2014 10:56:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-zone/m-p/2438479#M268369</guid>
      <dc:creator>saroj pradhan</dc:creator>
      <dc:date>2014-03-18T10:56:45Z</dc:date>
    </item>
  </channel>
</rss>

