<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Permitting telnet through port 80 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/permitting-telnet-through-port-80/m-p/1248618#M859400</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;there is no NAT going on for this particular node...all addressing is internal.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However this VIP could be considered to reside on the inside interface&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 10 Jun 2009 17:46:48 GMT</pubDate>
    <dc:creator>nygenxny123</dc:creator>
    <dc:date>2009-06-10T17:46:48Z</dc:date>
    <item>
      <title>Permitting telnet through port 80</title>
      <link>https://community.cisco.com/t5/network-security/permitting-telnet-through-port-80/m-p/1248616#M859397</link>
      <description>&lt;P&gt;We have a CSS with a configured vip for 4 servers in a cluster.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The admins want to telnet via port 80 to the VIP and reach a server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;They are coming from 192.168.5.x&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have entered thse rules&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list inside_access_in line 39 extended permit tcp 192.168.5.0 255.255.255.0 host Web-VIP object-group http-https 0x71c87785&lt;/P&gt;&lt;P&gt;access-list inside_access_in line 39 extended permit tcp 192.168.5.0 255.255.255.0 host Web-VIP eq https (hitcnt=0) 0x7cd8bb99&lt;/P&gt;&lt;P&gt;access-list inside_access_in line 39 extended permit tcp 192.168.5.0 255.255.255.0 host Web-VIP eq www (hitcnt=0) 0xfc9707c4 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However when i do a packet trace on ASDM with a packet tracer it is being denied by the deny ip any any rule&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am using the inside interface...source 192.168.5.3 as source, actual web vip as dest...source port telnet......dest port http/www&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 15:41:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/permitting-telnet-through-port-80/m-p/1248616#M859397</guid>
      <dc:creator>nygenxny123</dc:creator>
      <dc:date>2019-03-11T15:41:53Z</dc:date>
    </item>
    <item>
      <title>Re: Permitting telnet through port 80</title>
      <link>https://community.cisco.com/t5/network-security/permitting-telnet-through-port-80/m-p/1248617#M859398</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Where are Web-VIP host located? DMZ or outside?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please post your nat configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Guido.&lt;/P&gt;&lt;P&gt;&lt;FONT color="blue"&gt;Please rate all the helpful comments.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Jun 2009 17:20:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/permitting-telnet-through-port-80/m-p/1248617#M859398</guid>
      <dc:creator>BrinksArgentina</dc:creator>
      <dc:date>2009-06-10T17:20:54Z</dc:date>
    </item>
    <item>
      <title>Re: Permitting telnet through port 80</title>
      <link>https://community.cisco.com/t5/network-security/permitting-telnet-through-port-80/m-p/1248618#M859400</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;there is no NAT going on for this particular node...all addressing is internal.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However this VIP could be considered to reside on the inside interface&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Jun 2009 17:46:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/permitting-telnet-through-port-80/m-p/1248618#M859400</guid>
      <dc:creator>nygenxny123</dc:creator>
      <dc:date>2009-06-10T17:46:48Z</dc:date>
    </item>
  </channel>
</rss>

