<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Question on firewall configuration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/question-on-firewall-configuration/m-p/1901560#M437788</link>
    <description>&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/legacy/7/9/8/88897-figure.jpg" alt="figure.jpg" class="jive-image-thumbnail jive-image" onclick="" width="450" /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The above configuration is the sketch of my network with PIX firewall 515E. 200.2.xx.xx are the public IPs.&lt;/P&gt;&lt;P&gt;It has been configured that if someone through Internet access specific services like http&lt;/P&gt;&lt;P&gt;of 200.2.xx.xx is routed through to local address 192.168.0.240. Anyone can access&lt;/P&gt;&lt;P&gt;the sevice using the domain name or the public address 200.2.xx.xx.&amp;nbsp; When it is in the LAN,&lt;/P&gt;&lt;P&gt;we can access the website using the domain name but not with the public IP address.&lt;/P&gt;&lt;P&gt;But accessing via local address is successful like &lt;A href="http://192.168.0.240" target="_blank"&gt;http://192.168.0.240&lt;/A&gt;. Is there a way to re-route&lt;/P&gt;&lt;P&gt;the traffic to the LAN address if someone inside the LAN access the service using the public address?&lt;/P&gt;&lt;P&gt;Please help me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Actually, I need to configure a server that will only use IP address. But both inside and outside users&lt;/P&gt;&lt;P&gt;should be allowed to access the service using the public IP address. So far, users have to use&lt;/P&gt;&lt;P&gt;public IP when they are at home and private IP when they are in the LAN. Thank you.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 23:01:20 GMT</pubDate>
    <dc:creator>coreizero</dc:creator>
    <dc:date>2019-03-11T23:01:20Z</dc:date>
    <item>
      <title>Question on firewall configuration</title>
      <link>https://community.cisco.com/t5/network-security/question-on-firewall-configuration/m-p/1901560#M437788</link>
      <description>&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/legacy/7/9/8/88897-figure.jpg" alt="figure.jpg" class="jive-image-thumbnail jive-image" onclick="" width="450" /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The above configuration is the sketch of my network with PIX firewall 515E. 200.2.xx.xx are the public IPs.&lt;/P&gt;&lt;P&gt;It has been configured that if someone through Internet access specific services like http&lt;/P&gt;&lt;P&gt;of 200.2.xx.xx is routed through to local address 192.168.0.240. Anyone can access&lt;/P&gt;&lt;P&gt;the sevice using the domain name or the public address 200.2.xx.xx.&amp;nbsp; When it is in the LAN,&lt;/P&gt;&lt;P&gt;we can access the website using the domain name but not with the public IP address.&lt;/P&gt;&lt;P&gt;But accessing via local address is successful like &lt;A href="http://192.168.0.240" target="_blank"&gt;http://192.168.0.240&lt;/A&gt;. Is there a way to re-route&lt;/P&gt;&lt;P&gt;the traffic to the LAN address if someone inside the LAN access the service using the public address?&lt;/P&gt;&lt;P&gt;Please help me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Actually, I need to configure a server that will only use IP address. But both inside and outside users&lt;/P&gt;&lt;P&gt;should be allowed to access the service using the public IP address. So far, users have to use&lt;/P&gt;&lt;P&gt;public IP when they are at home and private IP when they are in the LAN. Thank you.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:01:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/question-on-firewall-configuration/m-p/1901560#M437788</guid>
      <dc:creator>coreizero</dc:creator>
      <dc:date>2019-03-11T23:01:20Z</dc:date>
    </item>
    <item>
      <title>Question on firewall configuration</title>
      <link>https://community.cisco.com/t5/network-security/question-on-firewall-configuration/m-p/1901561#M437789</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Refg,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Configuration is do-able, but you will need software version 7.2(1) at least, I recommend 7.2(4) latest interim.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is the firmware version running on your PIX appliance?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ahmad&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2012 09:23:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/question-on-firewall-configuration/m-p/1901561#M437789</guid>
      <dc:creator>a.matahen</dc:creator>
      <dc:date>2012-05-03T09:23:34Z</dc:date>
    </item>
    <item>
      <title>Question on firewall configuration</title>
      <link>https://community.cisco.com/t5/network-security/question-on-firewall-configuration/m-p/1901562#M437790</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks, Ahmad.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do not have 7.2 right now and I am not authorised to do the upgrade. There is no walkaround for this?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 May 2012 07:54:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/question-on-firewall-configuration/m-p/1901562#M437790</guid>
      <dc:creator>coreizero</dc:creator>
      <dc:date>2012-05-04T07:54:15Z</dc:date>
    </item>
    <item>
      <title>Re: Question on firewall configuration</title>
      <link>https://community.cisco.com/t5/network-security/question-on-firewall-configuration/m-p/1901563#M437791</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Refg,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Unfortnately no, since commands needed were introduced in that version.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;One of the commands used is &lt;STRONG&gt;same-security-traffic permit intra-interface &lt;/STRONG&gt;applies to non-encrypted traffic after 7.2(1).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ahmad&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 May 2012 08:18:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/question-on-firewall-configuration/m-p/1901563#M437791</guid>
      <dc:creator>a.matahen</dc:creator>
      <dc:date>2012-05-04T08:18:45Z</dc:date>
    </item>
  </channel>
</rss>

