<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA5505 giving error 106023 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967159#M917480</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi ..  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think the below ACL entry is not correct&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list outside_access_in extended permit udp any host 192.168.123.160 eq 5008 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it should allow access to the OUTSIDE INTERFACE as below&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list outside_access_in extended permit udp any interface outside eq 5008 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Similar entries should be added for any device being (Port Forwarded) by the external interface of the firewall).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The client on the outside of the firewall should be pointing to External-IP-Address of the firewall at port 5008 instead of to 192.168.123.160:5008&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps  ..  please rate helpfull posts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 30 Jun 2008 23:31:14 GMT</pubDate>
    <dc:creator>Fernando_Meza</dc:creator>
    <dc:date>2008-06-30T23:31:14Z</dc:date>
    <item>
      <title>ASA5505 giving error 106023</title>
      <link>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967158#M917477</link>
      <description>&lt;P&gt;I hope that I am describing my issue correctly:&lt;/P&gt;&lt;P&gt;I am getting errors that incoming packets are dropped because of access list "outside_access_in"&lt;/P&gt;&lt;P&gt;But I can't for the life of me figure it out.&lt;/P&gt;&lt;P&gt;I am pretty sure this used to work.&lt;/P&gt;&lt;P&gt;For example we use netmotion and that server is on the inside @ 192.168.123.160 using port 5008 which I have PATted from the outside interface.&lt;/P&gt;&lt;P&gt;But when a client on the outside attempts to access it I get the 106023 error : "Deny udp src outside:65.64.221.202/1269 dst inside:xx.xx.xx.xxx/5008 by access-group "outside_access_in" [0x0, 0x0]"&lt;/P&gt;&lt;P&gt;My external IP is DHCP from the ISP which is what shows at the above xx.xx.xx.xxx address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please, any pointers would be greatly appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 13:07:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967158#M917477</guid>
      <dc:creator>dirkmelvin</dc:creator>
      <dc:date>2019-03-11T13:07:03Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5505 giving error 106023</title>
      <link>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967159#M917480</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi ..  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think the below ACL entry is not correct&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list outside_access_in extended permit udp any host 192.168.123.160 eq 5008 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it should allow access to the OUTSIDE INTERFACE as below&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list outside_access_in extended permit udp any interface outside eq 5008 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Similar entries should be added for any device being (Port Forwarded) by the external interface of the firewall).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The client on the outside of the firewall should be pointing to External-IP-Address of the firewall at port 5008 instead of to 192.168.123.160:5008&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps  ..  please rate helpfull posts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Jun 2008 23:31:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967159#M917480</guid>
      <dc:creator>Fernando_Meza</dc:creator>
      <dc:date>2008-06-30T23:31:14Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5505 giving error 106023</title>
      <link>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967160#M917482</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have implemented it as of now. I will let you know how it works out. Thank you for your input.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Jul 2008 12:46:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967160#M917482</guid>
      <dc:creator>dirkmelvin</dc:creator>
      <dc:date>2008-07-01T12:46:08Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5505 giving error 106023</title>
      <link>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967161#M917484</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have implemented it as of now. I will let you know how it works out. Thank you for your input.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Jul 2008 12:58:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967161#M917484</guid>
      <dc:creator>dirkmelvin</dc:creator>
      <dc:date>2008-07-01T12:58:19Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5505 giving error 106023</title>
      <link>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967162#M917486</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry, I practically forgot about this post.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It did indeed solve my issue. Thank you so much!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 Jul 2008 12:47:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5505-giving-error-106023/m-p/967162#M917486</guid>
      <dc:creator>dirkmelvin</dc:creator>
      <dc:date>2008-07-30T12:47:55Z</dc:date>
    </item>
  </channel>
</rss>

