<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Allow only access to one IP and one port in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998087#M30773</link>
    <description>&lt;P&gt;Wow. That was it. Thank you very much&lt;/P&gt;</description>
    <pubDate>Thu, 12 Dec 2019 18:17:38 GMT</pubDate>
    <dc:creator>TristanGude</dc:creator>
    <dc:date>2019-12-12T18:17:38Z</dc:date>
    <item>
      <title>Allow only access to one IP and one port</title>
      <link>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998019#M30764</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I am trying to create a ICL to allow only Incoming traffic to IP XX.XX.XX.XX port 80&lt;/P&gt;&lt;P&gt;But it does not work.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Extended IP access list Outside-Traffic&lt;BR /&gt;40 permit tcp any host XX.XX.XX.XX eq www&lt;BR /&gt;900 deny ip any any&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Class Map type inspect match-any Incoming-Traffic (id 4)&lt;BR /&gt;Match access-group name Outside-Traffic&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Policy Map type inspect Incoming-Traffic-Policy&lt;BR /&gt;Class Incoming-Traffic&lt;BR /&gt;Inspect&lt;BR /&gt;Class class-default&lt;BR /&gt;Drop log&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Zone-pair name Out-To-In&lt;BR /&gt;Source-Zone Outside Destination-Zone Inside&lt;BR /&gt;service-policy Incoming-Traffic-Policy&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0/0/0&lt;BR /&gt;description Internet&lt;BR /&gt;zone-member security Outside&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/0/0.1&lt;BR /&gt;description Native VLAN&lt;BR /&gt;encapsulation dot1Q 1 native&lt;BR /&gt;ip address 172.16.0.1 255.255.255.0&lt;BR /&gt;ip nat inside&lt;BR /&gt;zone-member security Inside&lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;ip nat inside source static 172.16.0.226 XX.Xx.XX.XX&lt;/P&gt;</description>
      <pubDate>Thu, 12 Dec 2019 16:37:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998019#M30764</guid>
      <dc:creator>TristanGude</dc:creator>
      <dc:date>2019-12-12T16:37:54Z</dc:date>
    </item>
    <item>
      <title>Re: Allow only access to one IP and one port</title>
      <link>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998054#M30767</link>
      <description>Hi,&lt;BR /&gt;Try changing the ACL to use the real IP address of the host rather than the natted IP.&lt;BR /&gt;&lt;BR /&gt;HTH</description>
      <pubDate>Thu, 12 Dec 2019 17:18:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998054#M30767</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2019-12-12T17:18:46Z</dc:date>
    </item>
    <item>
      <title>Re: Allow only access to one IP and one port</title>
      <link>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998074#M30768</link>
      <description>&lt;P&gt;It has the real IP. I did not write it because we are a School and have been attacked several times. 45.59.xxx.xxx&lt;/P&gt;</description>
      <pubDate>Thu, 12 Dec 2019 17:55:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998074#M30768</guid>
      <dc:creator>TristanGude</dc:creator>
      <dc:date>2019-12-12T17:55:32Z</dc:date>
    </item>
    <item>
      <title>Re: Allow only access to one IP and one port</title>
      <link>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998084#M30771</link>
      <description>I mean define the private IP address (172.16.0.226) in the ACL not the nat/translated address.</description>
      <pubDate>Thu, 12 Dec 2019 18:08:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998084#M30771</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2019-12-12T18:08:25Z</dc:date>
    </item>
    <item>
      <title>Re: Allow only access to one IP and one port</title>
      <link>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998087#M30773</link>
      <description>&lt;P&gt;Wow. That was it. Thank you very much&lt;/P&gt;</description>
      <pubDate>Thu, 12 Dec 2019 18:17:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allow-only-access-to-one-ip-and-one-port/m-p/3998087#M30773</guid>
      <dc:creator>TristanGude</dc:creator>
      <dc:date>2019-12-12T18:17:38Z</dc:date>
    </item>
  </channel>
</rss>

