05-12-2018 03:17 PM - edited 02-21-2020 07:45 AM
Hi all,
I have installed a HA pair of 5508 controlled by an The plan is to have a webserver behind the firewall and be accessible from the internet. As i am rathern new on FMC can anyone suggest a best practice guideline to create the appropriate port forwarding and policy for publishing ports 80 and 443 to the internet.
Thanks!
05-12-2018 05:43 PM
What you do is create a NAT rule for your public IP address to the internal IP address of the webserver on the ASA (can do a nat based on ports 80 and 443). then create and ACL to allow http/https to your internal webserver IP address from any on your FMC
05-12-2018 11:25 PM
Hi Dennis,
Thanks for the reply,
Propably i didnt descibed correctly what i am looking for, i know what it should be done regarding port forward and policies. My question which propably is not stated clear enough at my first post, is that as there are many options in the NAT configuration if there is anything special i should have in mind when configuring the NAT. For example should i have the rule before or after the auto NAT rules.
Is there any configuration example that you can post?
Thanks again for you reply!
05-12-2018 10:28 PM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide