cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1249
Views
0
Helpful
3
Replies

Accessing inside URL from Outside

ABN96b6ZPS
Level 1
Level 1

Can anyone please help me with this...

I can access my webmail server from outside my network, but only if I type in the public IP address, eg https://webmail.mycompany.com does not work, but https://204.123.12.245/owa(not actual) does.  I am by no means a networking guy, but I got this far by trying a bunch of different access rules till this one worked...

Access Rules

Source Host/Net               Destination                    Interface                    Service

Webmail / IP of Server     Any                                   inside                         TCP

Any                                   Webmail/ IP of Server     outside                         Https/tcp

Is there something I'm doing wrong here?  I tried copying the same settings for our old OWA server but that didn't work either..

3 Replies 3

Hi Ryisheed,

Your problem seams to be a DNS one.

Could you check the DNS records regarding webmail.mycompany.com

Dan

Well thats what I thought too, untill I checked.  Unless Im not checking the right DNS..but here is what I've done:

Pinged the URL.. resolves to the correct Public IP,  Pinged the IP, it does not respond, NSLookup: resolves the internal IP, DNS query resolves the public IP A record.  I don't get it, my guess is that a rule needs to be created on my PIX that allows acces using the URL vs the IP.

Hi Ryisheed,

Nslookup is a dns query tool... you must check which dns do you query and what response do you receive.

Pinged the URL.. resolves to the correct Public IP,  Pinged the IP, it does not respond,

Currently in the internet your webmail.xxx.com has the reverse 163.x.x.53. It does not respond to icmp and does not allow me to connect to port 80 or 443.

Initially you said that :

I can access my webmail server from outside my network, but only if I type in the public IP address, eg https://webmail.mycompany.com does not work, but https://204.123.12.245/owa(not actual) does

You can still access the owa on the public ip ?

Can you post the nat rules, and the access-list for the outside interface ?

Dan

Review Cisco Networking for a $25 gift card