cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
354
Views
0
Helpful
2
Replies

Help on ASA traffic Outside

saquib.tandel
Level 1
Level 1

Hello

Different application needs different ports to pass traffic from inside to outside with ASA placed inbetween.

Instead of allowing all ports ; how to streamline with needed ports. Struggling to get it working.

LANUSERS_____switch____ASA_____INTERNET

Access-list is applied on ASA inside interface.

IF I start a Trading application from a LAN Host which needs to connect to Trading Server on INTERNET; how do I identify which ports are needed to open on ASA??

2 Replies 2

cisco24x7
Level 6
Level 6

access-list capture permit ip LAN_host Internet_host log

capture tcpdump access-list test interface internal

"show capture tcpdump" will show you which port LAN_host communicate with Internet host.

Hi

I am aware of LAN Host but not aware of Internet Host.

How to clear counter of the log as it shows already some hits

Review Cisco Networking for a $25 gift card