<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: public IP access in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374271#M768760</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN class="short_text" id="result_box"&gt;&lt;SPAN style="background-color: #ffffff;" title="jon"&gt;jon&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff;" title="estoy intentando acceder desde la inside"&gt;I'm trying to access from the inside&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff;" title="adjunto configuracion:"&gt;attached configuration:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt; nameif outside&lt;BR /&gt; security-level 0&lt;BR /&gt; ip address ip_public 255.255.255.248 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan2&lt;BR /&gt; nameif gerencia&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.1.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan3&lt;BR /&gt; nameif ventas_web&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.6.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan4&lt;BR /&gt; nameif facturacion&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.0.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan6&lt;BR /&gt; nameif camaras&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.3.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan7&lt;BR /&gt; nameif servidorweb&lt;BR /&gt; security-level 50&lt;BR /&gt; ip address 192.168.2.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/0&lt;BR /&gt; speed 100&lt;BR /&gt; duplex full&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt; switchport trunk allowed vlan 1-7&lt;BR /&gt; switchport trunk native vlan 2&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt; switchport access vlan 7&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/3&lt;BR /&gt; switchport access vlan 2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/4&lt;BR /&gt; switchport access vlan 2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/5&lt;BR /&gt; switchport access vlan 5&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/6&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/7&lt;BR /&gt;!&lt;BR /&gt;access-list camaras_nat0_outbound extended permit ip any 192.168.10.0 255.255.255.224 &lt;BR /&gt;global (outside) 1 interface&lt;BR /&gt;global (facturacion) 1 interface&lt;BR /&gt;nat (gerencia) 0 access-list clientvpn1&lt;BR /&gt;nat (gerencia) 1 0.0.0.0 0.0.0.0&lt;BR /&gt;nat (facturacion) 0 access-list clientvpn&lt;BR /&gt;nat (facturacion) 1 192.168.0.0 255.255.255.0&lt;BR /&gt;nat (camaras) 0 access-list camaras_nat0_outbound&lt;BR /&gt;nat (servidorweb) 0 access-list clientvpn2&lt;BR /&gt;nat (servidorweb) 1 servidor_web_local 255.255.255.255&lt;BR /&gt;nat (ventas_web) 1 192.168.6.0 255.255.255.0&lt;BR /&gt;static (facturacion,gerencia) 192.168.0.0 192.168.0.0 netmask 255.255.255.0 &lt;BR /&gt;static (camaras,gerencia) 192.168.3.0 192.168.3.0 netmask 255.255.255.0 &lt;BR /&gt;static (gerencia,facturacion) 192.168.1.0 192.168.1.0 netmask 255.255.255.0 &lt;BR /&gt;static (gerencia,camaras) 192.168.1.0 192.168.1.0 netmask 255.255.255.0 &lt;BR /&gt;static (facturacion,servidorweb) 192.168.0.0 192.168.0.0 netmask 255.255.255.0 &lt;BR /&gt;static (gerencia,servidorweb) 192.168.1.0 192.168.1.0 netmask 255.255.255.0 &lt;BR /&gt;static (facturacion,ventas_web) 192.168.0.0 192.168.0.0 netmask 255.255.255.0 &lt;BR /&gt;static (ventas_web,facturacion) 192.168.6.0 192.168.6.0 netmask 255.255.255.0 &lt;BR /&gt;static (ventas_web,servidorweb) 192.168.6.0 192.168.6.0 netmask 255.255.255.0 &lt;BR /&gt;static (ventas_web,gerencia) 192.168.6.0 192.168.6.0 netmask 255.255.255.0 &lt;BR /&gt;static (gerencia,ventas_web) 192.168.1.0 192.168.1.0 netmask 255.255.255.0 &lt;BR /&gt;static (servidorweb,outside) ip_public_server servidor_web_local netmask 255.255.255.255 &lt;BR /&gt;static (servidorweb,facturacion) 192.168.2.0 192.168.2.0 netmask 255.255.255.0 &lt;BR /&gt;static (servidorweb,gerencia) 192.168.2.0 192.168.2.0 netmask 255.255.255.0 &lt;BR /&gt;static (servidorweb,ventas_web) 192.168.2.0 192.168.2.0 netmask 255.255.255.0 &lt;BR /&gt;access-group outside_access_in in interface outside&lt;BR /&gt;access-group gerencia_access_in in interface gerencia&lt;BR /&gt;access-group facturacion_access_in in interface facturacion&lt;BR /&gt;access-group camaras_access_in in interface camaras&lt;BR /&gt;access-group servidorweb_access_in in interface servidorweb&lt;BR /&gt;access-group ventas_web_access_in_1 in interface ventas_web&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 ip_gateway 1&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 29 Dec 2009 21:05:42 GMT</pubDate>
    <dc:creator>Julio Saldivar</dc:creator>
    <dc:date>2009-12-29T21:05:42Z</dc:date>
    <item>
      <title>public IP access</title>
      <link>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374269#M768758</link>
      <description>&lt;DIV dir="ltr"&gt;&lt;DIV id="tts_button" style="margin: 2px 6px 0pt 0pt; float: left; display: none;" title="Escuchar traducción"&gt;&lt;OBJECT data="https://community.cisco.com/" height="18" id="tts_object" type="application/x-shockwave-flash" width="18"&gt;&lt;PARAM name="movie" value="http://www.gstatic.com/translate/sound_player.swf" /&gt;&lt;PARAM name="flashvars" value="sound_name=" /&gt;&lt;PARAM name="wmode" value="transparent" /&gt;&lt;PARAM name="allowScriptAccess" value="always" /&gt;&lt;/OBJECT&gt;&lt;/DIV&gt;&lt;SPAN class="long_text" id="result_box"&gt;&lt;SPAN title="tengo el siguiente problema, no puedo acceder a un servidor de la DMZ con su IP publica, el diagrama es el siguiente:"&gt;I have the following problem, I can not access a server in the DMZ with public IP, the diagram is as follows:&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN title="LAN&amp;lt;---&amp;gt;ASA&amp;lt;--&amp;gt;Internet"&gt;LAN &amp;lt;---&amp;gt; ASA &amp;lt;-&amp;gt; Internet&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN title="|"&gt;|&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN title="|"&gt;|&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN title="DMZ"&gt;DMZ&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN title="No me aparece ningun log de error, por favor su ayuda."&gt;I do not see any error log, please help.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;</description>
      <pubDate>Mon, 11 Mar 2019 16:52:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374269#M768758</guid>
      <dc:creator>Julio Saldivar</dc:creator>
      <dc:date>2019-03-11T16:52:38Z</dc:date>
    </item>
    <item>
      <title>Re: public IP access</title>
      <link>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374270#M768759</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;&lt;A class="jive-link-email-small" href="mailto:jusaldivar@raytel.cl"&gt;jusaldivar@raytel.cl&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;DIV dir="ltr"&gt;&lt;DIV id="tts_button" style="margin: 2px 6px 0pt 0pt; display: none; float: left;" title="Escuchar traducción"&gt;&lt;OBJECT height="18" id="tts_object" type="application/x-shockwave-flash" width="18"&gt;&lt;PARAM name="movie" value="http://www.gstatic.com/translate/sound_player.swf" /&gt;&lt;PARAM name="flashvars" value="sound_name=" /&gt;&lt;PARAM name="wmode" value="transparent" /&gt;&lt;PARAM name="allowScriptAccess" value="always" /&gt;&lt;/OBJECT&gt;&lt;/DIV&gt;&lt;SPAN class="long_text" id="result_box"&gt;&lt;SPAN title="tengo el siguiente problema, no puedo acceder a un servidor de la DMZ con su IP publica, el diagrama es el siguiente:"&gt;I have the following problem, I can not access a server in the DMZ with public IP, the diagram is as follows:&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN title="LAN&amp;lt;---&amp;gt;ASA&amp;lt;--&amp;gt;Internet"&gt;LAN &amp;lt;---&amp;gt; ASA &amp;lt;-&amp;gt; Internet&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN title="|"&gt;|&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN title="|"&gt;|&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN title="DMZ"&gt;DMZ&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN title="No me aparece ningun log de error, por favor su ayuda."&gt;I do not see any error log, please help.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Where are you trying to access the server from ie. inside or from internet ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you post your config ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 29 Dec 2009 20:17:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374270#M768759</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2009-12-29T20:17:32Z</dc:date>
    </item>
    <item>
      <title>Re: public IP access</title>
      <link>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374271#M768760</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN class="short_text" id="result_box"&gt;&lt;SPAN style="background-color: #ffffff;" title="jon"&gt;jon&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff;" title="estoy intentando acceder desde la inside"&gt;I'm trying to access from the inside&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff;" title="adjunto configuracion:"&gt;attached configuration:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt; nameif outside&lt;BR /&gt; security-level 0&lt;BR /&gt; ip address ip_public 255.255.255.248 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan2&lt;BR /&gt; nameif gerencia&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.1.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan3&lt;BR /&gt; nameif ventas_web&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.6.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan4&lt;BR /&gt; nameif facturacion&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.0.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan6&lt;BR /&gt; nameif camaras&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.3.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Vlan7&lt;BR /&gt; nameif servidorweb&lt;BR /&gt; security-level 50&lt;BR /&gt; ip address 192.168.2.1 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/0&lt;BR /&gt; speed 100&lt;BR /&gt; duplex full&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt; switchport trunk allowed vlan 1-7&lt;BR /&gt; switchport trunk native vlan 2&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt; switchport access vlan 7&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/3&lt;BR /&gt; switchport access vlan 2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/4&lt;BR /&gt; switchport access vlan 2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/5&lt;BR /&gt; switchport access vlan 5&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/6&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/7&lt;BR /&gt;!&lt;BR /&gt;access-list camaras_nat0_outbound extended permit ip any 192.168.10.0 255.255.255.224 &lt;BR /&gt;global (outside) 1 interface&lt;BR /&gt;global (facturacion) 1 interface&lt;BR /&gt;nat (gerencia) 0 access-list clientvpn1&lt;BR /&gt;nat (gerencia) 1 0.0.0.0 0.0.0.0&lt;BR /&gt;nat (facturacion) 0 access-list clientvpn&lt;BR /&gt;nat (facturacion) 1 192.168.0.0 255.255.255.0&lt;BR /&gt;nat (camaras) 0 access-list camaras_nat0_outbound&lt;BR /&gt;nat (servidorweb) 0 access-list clientvpn2&lt;BR /&gt;nat (servidorweb) 1 servidor_web_local 255.255.255.255&lt;BR /&gt;nat (ventas_web) 1 192.168.6.0 255.255.255.0&lt;BR /&gt;static (facturacion,gerencia) 192.168.0.0 192.168.0.0 netmask 255.255.255.0 &lt;BR /&gt;static (camaras,gerencia) 192.168.3.0 192.168.3.0 netmask 255.255.255.0 &lt;BR /&gt;static (gerencia,facturacion) 192.168.1.0 192.168.1.0 netmask 255.255.255.0 &lt;BR /&gt;static (gerencia,camaras) 192.168.1.0 192.168.1.0 netmask 255.255.255.0 &lt;BR /&gt;static (facturacion,servidorweb) 192.168.0.0 192.168.0.0 netmask 255.255.255.0 &lt;BR /&gt;static (gerencia,servidorweb) 192.168.1.0 192.168.1.0 netmask 255.255.255.0 &lt;BR /&gt;static (facturacion,ventas_web) 192.168.0.0 192.168.0.0 netmask 255.255.255.0 &lt;BR /&gt;static (ventas_web,facturacion) 192.168.6.0 192.168.6.0 netmask 255.255.255.0 &lt;BR /&gt;static (ventas_web,servidorweb) 192.168.6.0 192.168.6.0 netmask 255.255.255.0 &lt;BR /&gt;static (ventas_web,gerencia) 192.168.6.0 192.168.6.0 netmask 255.255.255.0 &lt;BR /&gt;static (gerencia,ventas_web) 192.168.1.0 192.168.1.0 netmask 255.255.255.0 &lt;BR /&gt;static (servidorweb,outside) ip_public_server servidor_web_local netmask 255.255.255.255 &lt;BR /&gt;static (servidorweb,facturacion) 192.168.2.0 192.168.2.0 netmask 255.255.255.0 &lt;BR /&gt;static (servidorweb,gerencia) 192.168.2.0 192.168.2.0 netmask 255.255.255.0 &lt;BR /&gt;static (servidorweb,ventas_web) 192.168.2.0 192.168.2.0 netmask 255.255.255.0 &lt;BR /&gt;access-group outside_access_in in interface outside&lt;BR /&gt;access-group gerencia_access_in in interface gerencia&lt;BR /&gt;access-group facturacion_access_in in interface facturacion&lt;BR /&gt;access-group camaras_access_in in interface camaras&lt;BR /&gt;access-group servidorweb_access_in in interface servidorweb&lt;BR /&gt;access-group ventas_web_access_in_1 in interface ventas_web&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 ip_gateway 1&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 29 Dec 2009 21:05:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374271#M768760</guid>
      <dc:creator>Julio Saldivar</dc:creator>
      <dc:date>2009-12-29T21:05:42Z</dc:date>
    </item>
    <item>
      <title>Re: public IP access</title>
      <link>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374272#M768761</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There are a number of options you could use to achieve this. Have a read of this link which will explain how to configure it and if you have further questions please come back -&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://blogs.interfacett.com/mike-storm/2006/6/29/bidirectional-nat-on-a-cisco-pix-or-asa.html"&gt;http://blogs.interfacett.com/mike-storm/2006/6/29/bidirectional-nat-on-a-cisco-pix-or-asa.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 29 Dec 2009 21:15:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374272#M768761</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2009-12-29T21:15:09Z</dc:date>
    </item>
    <item>
      <title>Re: public IP access</title>
      <link>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374273#M768762</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="text-align: left;"&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="text-align: left;"&gt;By default , ASA will allow traffic from higher security-level interface to a lower one as long as you a NAT translation for it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="text-align: left;"&gt;In your config, there are several interfaces with sec-level as 100 and DMZ (sec-level = 50) is only ONE. Please make sure that from the interface where you want to initiate traffic has a corresponding NAT for it as follows:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="text-align: left;"&gt;Users (10.1.1.0/24)-----------------in_1[ASA]dmz_1-----------server (1.1.1.1)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="text-align: left;"&gt;nat (in_1) 1&amp;nbsp; 0 0&lt;/P&gt;&lt;P style="text-align: left;"&gt;global (dmz_1) 1 interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="text-align: left;"&gt;Now as long as you do not have any ACLs blocking the connection at in_1 and dmz_1 interface you should&amp;nbsp; not be having any issue in accessing the server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="text-align: left;"&gt;Also, try bypassing any networking devices between clients and ASA by connecting PC directly to ASA and try to access server. This will help you to understand if ASA is actually cause of concern or not.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="text-align: left;"&gt;Another troubleshooting tip would be to try packet tracer built-in simulator in ASDM. It can be found in ASDM as Tool---&amp;gt;packet-tracer.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Vijaya&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Jan 2010 21:11:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374273#M768762</guid>
      <dc:creator>vilaxmi</dc:creator>
      <dc:date>2010-01-01T21:11:31Z</dc:date>
    </item>
    <item>
      <title>Re: public IP access</title>
      <link>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374274#M768763</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN class="short_text" id="result_box"&gt;&lt;SPAN style="background-color: #ffffff;" title="muchas gracias jon, utilize el siguiente comando para resolver el problema:"&gt;jon thank you very much, use the following command to resolve the problem:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;static (dmz,inside) 51.88.80.100 172.16.1.100 &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" id="result_box"&gt;&lt;SPAN style="background-color: #ffffff;" title="saludos"&gt;greetings&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Jan 2010 15:52:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/public-ip-access/m-p/1374274#M768763</guid>
      <dc:creator>Julio Saldivar</dc:creator>
      <dc:date>2010-01-04T15:52:27Z</dc:date>
    </item>
  </channel>
</rss>

