cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
398
Views
0
Helpful
1
Replies

Cisco ASA With jabber client connect from outside

Ibrahim Jamil
Level 6
Level 6

hello Guys

 

what shall i do on Cisco ASA to let jabber client connect from outside

 

EXP-E sits in DMZ  --nated to outside public IP

 

EXP-C sits inside   -- Talk to EXP-E using NAT Reflection

 

 

All Necessary ACL in place

 

Regards

 

Ali

 

 

 

 

 

1 Reply 1

Slavik Bialik
Level 7
Level 7

Hi,

I understand that you're using a single NIC deployment on your Expressway-E? You've mentioned that you're doing NAT reflect, you only do that when you use a single NIC.

 

Anyway, you didn't provide much of information.

 

  1. Is the MRA zone from Expressway-C to Expressway-E is up?
  2. Do you see any ports being blocked in the Firewall?
  3. Did you publish the "_collab-edge._tls.domain.com" SRV record in the public DNS?
  4. Did you create an internal DNS A Record in your internal DNS server that is pointing to the PUBLIC IP address of the Expressway-E?
  5. Did you create a PTR record in your internal DNS server that points the PUBLIC IP address of the Expressway-E to its FQDN? (without it won't work, starting from Expressway 8.8.x)
  6. Is Jabber working fine in the corporate LAN?

Please check all the above.

If all the above are fine, please go and on both of the Expressway server and do: Maintenance -> Diagnostics -> Diagnostic logging, and press "Start new log". After you do that, try to make a login with a Jabber device over the internet and after you get your error press on "Stop logging" and gather both logs and attach them here.