06-01-2013 02:15 PM - edited 03-11-2019 06:52 PM
Hi guys, I have a ASA5505 and I'm having trouble to achieve the following setup, block any kind of connection from outside except for IIS on port 80 and 443 but allow from the server to access any outside address, by domain or ip. Right now apps writen in C# on the server are throughing socket errors and Teamviewer remote control is not working, I would like it to replace remote desktop.
Could you take a look at my screenshot and give me any advise?
Thanks
06-01-2013 02:28 PM
works now like this (bellow).
based on your expertise, do the rules bellow offer a great level of security?
06-01-2013 03:00 PM
Hi Paulo,
First, I You don't have to configure your ACLs like(source: any ==> Detsination: any). To permit anyone to access your server (example 192.168.1.1) use an ACL like this:
So, I recommend you to always specify the source and the destionation in your ACLs ( not any ==> any) !!
Best regards.
06-05-2013 04:57 AM
when you say "use an ACL like this:" I think you forgot to include the sample, I've got yesterday over 500 login attemps (audit failures) from localhost I guess, could you explain me how should I direct the ACL?
Thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide