<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Ports to be opened in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ports-to-be-opened/m-p/1000062#M916459</link>
    <description>&lt;P&gt;Hi i use ASA 5520 all my clients on my LAN Jus go out for internet i use ip any any on my outside interface of ASA i dont want to use it CAN u please tell me the default ports that are to be permitted i know some what else can be used &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;www&lt;/P&gt;&lt;P&gt;ftp&lt;/P&gt;&lt;P&gt;ssh&lt;/P&gt;&lt;P&gt;3389 remote desktop service &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 13:16:37 GMT</pubDate>
    <dc:creator>sreekanth sarma</dc:creator>
    <dc:date>2019-03-11T13:16:37Z</dc:date>
    <item>
      <title>Ports to be opened</title>
      <link>https://community.cisco.com/t5/network-security/ports-to-be-opened/m-p/1000062#M916459</link>
      <description>&lt;P&gt;Hi i use ASA 5520 all my clients on my LAN Jus go out for internet i use ip any any on my outside interface of ASA i dont want to use it CAN u please tell me the default ports that are to be permitted i know some what else can be used &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;www&lt;/P&gt;&lt;P&gt;ftp&lt;/P&gt;&lt;P&gt;ssh&lt;/P&gt;&lt;P&gt;3389 remote desktop service &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 13:16:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ports-to-be-opened/m-p/1000062#M916459</guid>
      <dc:creator>sreekanth sarma</dc:creator>
      <dc:date>2019-03-11T13:16:37Z</dc:date>
    </item>
    <item>
      <title>Re: Ports to be opened</title>
      <link>https://community.cisco.com/t5/network-security/ports-to-be-opened/m-p/1000063#M916465</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;any traffic from in to out is permitted by deafult, unless you apply an ACL.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;any traffic from out to in has to be permitted in an ACL if you have something that needs to be served to the web (ie. ftp).  you Never want permit ip any any frmo out to in!!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Jul 2008 13:26:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ports-to-be-opened/m-p/1000063#M916465</guid>
      <dc:creator>Adam Frederick</dc:creator>
      <dc:date>2008-07-18T13:26:29Z</dc:date>
    </item>
    <item>
      <title>Re: Ports to be opened</title>
      <link>https://community.cisco.com/t5/network-security/ports-to-be-opened/m-p/1000064#M916472</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Some common ports would be &lt;/P&gt;&lt;P&gt;http,https,dns,ftp,3389.. but better to enable logging and capture traffic logs.&lt;/P&gt;&lt;P&gt;This will help you to build the access-lists for  allowing traffic from inside LAN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And like the other person has mentioned, put ACL on the Outside .. allow only legitimate traffic from Out to in.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Jul 2008 14:06:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ports-to-be-opened/m-p/1000064#M916472</guid>
      <dc:creator>dhananjoy chowdhury</dc:creator>
      <dc:date>2008-07-18T14:06:23Z</dc:date>
    </item>
  </channel>
</rss>

