<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco Firewall FPR 1120 Not allowing outside traffic to Exchange &amp;amp; Web Servers in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4007857#M934260</link>
    <description>Hi,&lt;BR /&gt;Please can you provide a screenshot of your nat rules (either from the GUI or from the CLI). Can you also run packet-tracer and upload the output for review.&lt;BR /&gt;&lt;BR /&gt;</description>
    <pubDate>Tue, 07 Jan 2020 22:25:11 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2020-01-07T22:25:11Z</dc:date>
    <item>
      <title>Cisco Firewall FPR 1120 Not allowing outside traffic to Exchange &amp; Web Servers</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4007789#M934259</link>
      <description>&lt;P&gt;Hello Cisco Community&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have configured the above firewall using Firepower Device Manager , i am a bit new to this GUI interface, and i am having issues with the access control. I have set up all my objects with their appropriate IP addresses and have also configured NAT.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The initial configuration just allowed may inside client machines to access internet , but connections from the outside can't reach my web server and exchange server (hence i can't get emails and access to the web). even though the &lt;STRONG&gt;site ,object ,ports&lt;/STRONG&gt; were properly set up. I only got some hits on the rules when i added the &lt;STRONG&gt;&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;A href="https://www.mywebsite.com&amp;nbsp;" target="_blank" rel="noopener"&gt;https://www.mywebsite.com&amp;nbsp;&lt;/A&gt; and &lt;A href="Https://webmail.mysite.com" target="_blank" rel="noopener"&gt;Https://webmail.mysite.com&lt;/A&gt; (for the mail) under the &lt;STRONG&gt;URL&amp;nbsp;&lt;/STRONG&gt;tab.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My problem now is that even though i can send emails from inside , receiving emails is still a challenge.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:49:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4007789#M934259</guid>
      <dc:creator>easydee</dc:creator>
      <dc:date>2020-02-21T17:49:10Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firewall FPR 1120 Not allowing outside traffic to Exchange &amp; Web Servers</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4007857#M934260</link>
      <description>Hi,&lt;BR /&gt;Please can you provide a screenshot of your nat rules (either from the GUI or from the CLI). Can you also run packet-tracer and upload the output for review.&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 07 Jan 2020 22:25:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4007857#M934260</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2020-01-07T22:25:11Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firewall FPR 1120 Not allowing outside traffic to Exchange &amp; Web Servers</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4007912#M934261</link>
      <description>&lt;P&gt;Normally we allow the inbound traffic by using destination IP address, not by destination URL. If you use URL, one must pay careful attention to the interaction of DNS with the lookup feature.&lt;/P&gt;</description>
      <pubDate>Wed, 08 Jan 2020 02:31:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4007912#M934261</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-01-08T02:31:57Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firewall FPR 1120 Not allowing outside traffic to Exchange &amp; Web Servers</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4008193#M934262</link>
      <description>&lt;P&gt;I have attached the screnshots of the GUI NAT and Access Control. The red circle is the urls that i had to put in to allow inbound traffic. Just to let you know , i tried with the flexiconfig to put in the extended access-list but as well they were not getting any hits. I will try to run the packet tracer off working hours, currently i have another firewall on the network that i want to retire.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Jan 2020 15:00:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4008193#M934262</guid>
      <dc:creator>easydee</dc:creator>
      <dc:date>2020-01-08T15:00:50Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firewall FPR 1120 Not allowing outside traffic to Exchange &amp; Web Servers</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4008195#M934263</link>
      <description>&lt;P&gt;The destination IP addresses are there , the only problem is the Access rule is not getting hits with only IP addresses&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Jan 2020 15:05:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4008195#M934263</guid>
      <dc:creator>easydee</dc:creator>
      <dc:date>2020-01-08T15:05:56Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firewall FPR 1120 Not allowing outside traffic to Exchange &amp; Web Servers</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4008573#M934264</link>
      <description>&lt;P&gt;It looks like your web server is using the outside interface for static NAT while "any" inside uses the same interface for dynamic NAT. That needs to change - use a unique address for the web server otherwise the xlate tables will be ambiguous.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jan 2020 05:40:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4008573#M934264</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-01-09T05:40:56Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firewall FPR 1120 Not allowing outside traffic to Exchange &amp; Web Servers</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4008880#M934265</link>
      <description>&lt;P&gt;Thank you, will configure that and will let you know the results&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jan 2020 15:32:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4008880#M934265</guid>
      <dc:creator>easydee</dc:creator>
      <dc:date>2020-01-09T15:32:05Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firewall FPR 1120 Not allowing outside traffic to Exchange &amp; Web Servers</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4009033#M934267</link>
      <description>&lt;P&gt;Thank you Marvin, that worked. I have also remove the &lt;STRONG&gt;url&lt;/STRONG&gt; links and the inbound traffic is now flowing as intended&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jan 2020 19:58:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firewall-fpr-1120-not-allowing-outside-traffic-to-exchange/m-p/4009033#M934267</guid>
      <dc:creator>easydee</dc:creator>
      <dc:date>2020-01-09T19:58:57Z</dc:date>
    </item>
  </channel>
</rss>

