<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX port forward in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-port-forward/m-p/717505#M979624</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The outside interface has multiple addresses, i got the normal ftp (21) working going to add a ACL for ftp-data(20) and see if passive mode works&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 31 May 2007 17:22:43 GMT</pubDate>
    <dc:creator>plank1111</dc:creator>
    <dc:date>2007-05-31T17:22:43Z</dc:date>
    <item>
      <title>PIX port forward</title>
      <link>https://community.cisco.com/t5/network-security/pix-port-forward/m-p/717503#M979620</link>
      <description>&lt;P&gt;I have a Pix 515e that I need to forward a port. this should be a simple task but for some reason it is not working.  I have attached my config file &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to  forward FTP to mcs-sbs01 I have the nat setup in the config I attached it has ** above and below it to help you find it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't seem to get an access rule that allows traffic through.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 10:23:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-port-forward/m-p/717503#M979620</guid>
      <dc:creator>plank1111</dc:creator>
      <dc:date>2019-03-11T10:23:12Z</dc:date>
    </item>
    <item>
      <title>Re: PIX port forward</title>
      <link>https://community.cisco.com/t5/network-security/pix-port-forward/m-p/717504#M979621</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is your static nat outside ip address related to the outside interface ip? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip address outside ******.194 255.255.255.192&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp 65.23.46.194 ftp mcs-sbs01 ftp netmask 255.255.255.255 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If so you need to make a small change on the static statement, instead of putting the ip address of the outside interface use the keyword interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp interface ftp mcs-sbs01 ftp netmask 255.255.255.255 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Hoogen&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do rate if this post helps &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 May 2007 17:04:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-port-forward/m-p/717504#M979621</guid>
      <dc:creator>hoogen_82</dc:creator>
      <dc:date>2007-05-31T17:04:44Z</dc:date>
    </item>
    <item>
      <title>Re: PIX port forward</title>
      <link>https://community.cisco.com/t5/network-security/pix-port-forward/m-p/717505#M979624</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The outside interface has multiple addresses, i got the normal ftp (21) working going to add a ACL for ftp-data(20) and see if passive mode works&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 May 2007 17:22:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-port-forward/m-p/717505#M979624</guid>
      <dc:creator>plank1111</dc:creator>
      <dc:date>2007-05-31T17:22:43Z</dc:date>
    </item>
    <item>
      <title>Re: PIX port forward</title>
      <link>https://community.cisco.com/t5/network-security/pix-port-forward/m-p/717506#M979626</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;adding an ACL for port 20 did not fix my data port error on FTP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if I add the following two ACL's will this fix my problem?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list inside_access_in permit host 192.168.1.221 eq ftp any established&lt;/P&gt;&lt;P&gt;access-list inside_access_in permit host 192.168.1.221 eq ftp-data any established&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 May 2007 17:48:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-port-forward/m-p/717506#M979626</guid>
      <dc:creator>plank1111</dc:creator>
      <dc:date>2007-05-31T17:48:02Z</dc:date>
    </item>
  </channel>
</rss>

