<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Facing an Issue with one website in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856587#M480317</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;The download was successfull completed. Please help me further to solve this problem permanently from the IPS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I really appreciated your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samir.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 14 Jan 2012 20:18:45 GMT</pubDate>
    <dc:creator>samirshaikh52</dc:creator>
    <dc:date>2012-01-14T20:18:45Z</dc:date>
    <item>
      <title>Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856571#M480301</link>
      <description>&lt;P&gt;Hello Experts,&lt;/P&gt;&lt;P&gt;I'm facing a weird problem and I was tired as i try all my best to solve the issue.&lt;/P&gt;&lt;P&gt;I'm facing a problem accessing 1 medical website.It works for 5 minutes and stopped working.&lt;/P&gt;&lt;P&gt;If I connect a laptop directly to my router and assign public ip it works and download from the website with no issue. BUt if i connect this laptop to my internal network behind asa I face issues. I can browse other websites without problemsFor more info I've inbuilt IPS with ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm sure something internally having problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please help me&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:14:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856571#M480301</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2019-03-11T22:14:23Z</dc:date>
    </item>
    <item>
      <title>Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856572#M480302</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Samir,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So even if you do not use the IPS module on the ASA you still have the issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hmm do you have any logs while the connection gets closed, next thing will be to do a capture.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also when you connect the pc directly connected what ip address does the PC uses? Is the same as the one that it uses while he goes to the outside using the ASA or its a different one?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 18:55:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856572#M480302</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-01-14T18:55:10Z</dc:date>
    </item>
    <item>
      <title>Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856573#M480303</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;Thanks for your fast response.&lt;/P&gt;&lt;P&gt;I havent tried without IPS.&lt;/P&gt;&lt;P&gt;How can I do caputring ? &lt;/P&gt;&lt;P&gt;I uses different IP on a pc other than used by ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:05:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856573#M480303</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T19:05:33Z</dc:date>
    </item>
    <item>
      <title>Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856574#M480304</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ok, lets do something first,&lt;/P&gt;&lt;P&gt;As a test using the ASA, please make a static translation on the ASA from that pc to the other ip that is using when the ASA is not there&lt;/P&gt;&lt;P&gt;static (inside,outside) public_ip private_ip&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And give it a shot&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:09:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856574#M480304</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-01-14T19:09:54Z</dc:date>
    </item>
    <item>
      <title>Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856575#M480305</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;I tried other public ip as nating but still the same. I cane browse other website successfully.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samir&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:18:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856575#M480305</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T19:18:11Z</dc:date>
    </item>
    <item>
      <title>Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856576#M480306</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just to confirm I did lookup by visiting the website whatismyip.com.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samir&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:29:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856576#M480306</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T19:29:05Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856577#M480307</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;One more thing I've noted that once I start downloading the medical files from site then the website and download stops working.&lt;/P&gt;&lt;P&gt;Download reached to 2-5 % and get interrupted.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samir&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:31:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856577#M480307</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T19:31:27Z</dc:date>
    </item>
    <item>
      <title>Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856578#M480308</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Samir,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ok, can you take out that nat statement that you just added and used the old one but this time lets&amp;nbsp; bypass the IPS and give it a try,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:38:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856578#M480308</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-01-14T19:38:28Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856579#M480309</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please advise me how i can bypass IPS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:39:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856579#M480309</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T19:39:48Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856580#M480310</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Samir,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You send all the traffic to the IPS by using MPF, so can a see the show run policy-map? and show run class-map&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:42:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856580#M480310</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-01-14T19:42:30Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856581#M480311</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI,&lt;/P&gt;&lt;P&gt;ASA-5520# sh running-config class-map&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;class-map ips_class&lt;/P&gt;&lt;P&gt; match access-list CSM_TF_ACL_IPS__1&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA-5520# sh running-config policy-map&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map type inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt; parameters&lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum 512&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rtsp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect esmtp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sqlnet&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect skinny&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sunrpc&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect xdmcp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sip&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect netbios&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect tftp&lt;/P&gt;&lt;P&gt; class ips_class&lt;/P&gt;&lt;P&gt;&amp;nbsp; ips inline fail-open&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samir&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:48:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856581#M480311</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T19:48:30Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856582#M480312</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;add the following&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list&amp;nbsp; CSM_TF_ACL_IPS__1 line 1 deny tcp host x.x.x.x ( private ip address test PC) any eq 80&lt;/P&gt;&lt;P&gt;access-list&amp;nbsp; CSM_TF_ACL_IPS__1 line 2 deny tcp host x.x.x.x ( private ip address test PC) any eq 443&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:50:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856582#M480312</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-01-14T19:50:28Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856583#M480313</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;please can you tell me what this command will do ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:51:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856583#M480313</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T19:51:56Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856584#M480314</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sure ! The connections being innitiated from that host going to port 80 or 443 will not be inspected by the IPS!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That is all&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rate post that help!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 19:56:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856584#M480314</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-01-14T19:56:34Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856585#M480315</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Until now the download has reached to 30 % there seemd to be progress. So what could be the issue Is there any alternative solution instead of bypassing IPS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samir&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 20:07:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856585#M480315</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T20:07:49Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856586#M480316</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As this website will used by many users in my organization and I cannot let http and https bypassing IPS. Your further help will be highly appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you very much. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 20:12:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856586#M480316</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T20:12:01Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856587#M480317</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;The download was successfull completed. Please help me further to solve this problem permanently from the IPS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I really appreciated your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samir.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 20:18:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856587#M480317</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T20:18:45Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856588#M480318</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Any suggestions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samir&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 20:31:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856588#M480318</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T20:31:30Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856589#M480319</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Samir,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There got to be something with that particular website that is making a signature on the IPS to reset or drop the connection, in this case we will need to make captures and troubleshoot the IPS module to see what is going on.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The workaround on this would be to instead of this:&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;access-list&amp;nbsp; CSM_TF_ACL_IPS__1 line 1 deny tcp host x.x.x.x ( private ip address test PC) any eq 80&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;access-list&amp;nbsp; CSM_TF_ACL_IPS__1 line 2 deny tcp host x.x.x.x ( private ip address test PC) any eq 443&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Use this:&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;access-list&amp;nbsp; CSM_TF_ACL_IPS__1 line 1 deny tcp any&amp;nbsp; host website_ip eq 80&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;access-list&amp;nbsp; CSM_TF_ACL_IPS__1 line 2 deny tcp any host website_ip&amp;nbsp; eq 443&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With this, the only tcp port 80 and 443 that will be bypassed will be the one going to that particular website.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can do a nslookup to get the ip address of the remote site.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope I helped you on this&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rate posts that helps you&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 21:34:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856589#M480319</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-01-14T21:34:48Z</dc:date>
    </item>
    <item>
      <title>Re: Facing an Issue with one website</title>
      <link>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856590#M480320</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;Firstly thank you very much for your help I really appreciate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;access-list&amp;nbsp; CSM_TF_ACL_IPS__1 line 1 deny tcp any&amp;nbsp; host website_ip eq 80&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;access-list&amp;nbsp; CSM_TF_ACL_IPS__1 line 2 deny tcp any host website_ip&amp;nbsp; eq 443&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks once again. Have a nice time.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 21:40:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/facing-an-issue-with-one-website/m-p/1856590#M480320</guid>
      <dc:creator>samirshaikh52</dc:creator>
      <dc:date>2012-01-14T21:40:08Z</dc:date>
    </item>
  </channel>
</rss>

