<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Secure path access in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/secure-path-access/m-p/1187234#M859592</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have users behind the firewall and need to access telnet session to the xtrader.prudential.com port 10200.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;we have DHCP so user IP changes and cannot configure user on static IP, what is the secure way to allow this on Cisco ASA 5510&lt;/P&gt;&lt;P&gt;LAN IP segment is 192.168.20.0/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 15:38:06 GMT</pubDate>
    <dc:creator>ronald.ramzy</dc:creator>
    <dc:date>2019-03-11T15:38:06Z</dc:date>
    <item>
      <title>Secure path access</title>
      <link>https://community.cisco.com/t5/network-security/secure-path-access/m-p/1187234#M859592</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have users behind the firewall and need to access telnet session to the xtrader.prudential.com port 10200.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;we have DHCP so user IP changes and cannot configure user on static IP, what is the secure way to allow this on Cisco ASA 5510&lt;/P&gt;&lt;P&gt;LAN IP segment is 192.168.20.0/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 15:38:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secure-path-access/m-p/1187234#M859592</guid>
      <dc:creator>ronald.ramzy</dc:creator>
      <dc:date>2019-03-11T15:38:06Z</dc:date>
    </item>
    <item>
      <title>Re: Secure path access</title>
      <link>https://community.cisco.com/t5/network-security/secure-path-access/m-p/1187235#M859599</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm assuming you are talking about local users accessing the telnet session outbound through the firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You'll need the IP of the host you provided, which from my ping DNS resolves it to 12.34.101.191.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Whatever your access-list name is for inside-to-outbound traffic, in this example we'll use the name inside_out, the rule would look like this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list inside_out extended permit tcp 192.168.20.0 255.255.255.0 host 12.34.101.191 eq 10200&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Jun 2009 12:46:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secure-path-access/m-p/1187235#M859599</guid>
      <dc:creator>jj27</dc:creator>
      <dc:date>2009-06-01T12:46:26Z</dc:date>
    </item>
    <item>
      <title>Re: Secure path access</title>
      <link>https://community.cisco.com/t5/network-security/secure-path-access/m-p/1187236#M859603</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thank you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you help to configure &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;() How could I allow ssh from inside to outside only. Block SSH from outside to inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;() Block internet browsing from inside to outside ( inside lan 192.168.20.0/24 )&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;() resolve DNS queries for Windows DNS Server ( windows DNS Server = 192.168.1.100 )&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have SSH attack on natted IP for proxy-server, how to resolve it&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Jun 2009 13:03:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secure-path-access/m-p/1187236#M859603</guid>
      <dc:creator>ronald.ramzy</dc:creator>
      <dc:date>2009-06-01T13:03:19Z</dc:date>
    </item>
  </channel>
</rss>

