03-16-2010 07:55 AM - edited 03-11-2019 10:22 AM
Was wondering if someone could help since I've never set up a rule that did a port translation, one of our groups has requested the following: they need a rule permits port 21 and translates it to port 2121 for the following IP 10.0.0.2. The ftp daemon is listening on port 2121 but they want to have normal port 21 activity.
I appreciate any advise.
Solved! Go to Solution.
03-16-2010 08:00 AM
Hi,
static (in,out) tcp x.x.x.x 21 10.0.0.2 2121
The above rule says that whenever incoming traffic reaches IP x.x.x.x on port 21, it will be redirected
to IP 10.0.0.2 on port 2121
You should also have an ACL permitting this traffic, for example:
access-list outside permit tcp any host x.x.x.x eq 21
Federico.
03-16-2010 08:00 AM
Hi,
static (in,out) tcp x.x.x.x 21 10.0.0.2 2121
The above rule says that whenever incoming traffic reaches IP x.x.x.x on port 21, it will be redirected
to IP 10.0.0.2 on port 2121
You should also have an ACL permitting this traffic, for example:
access-list outside permit tcp any host x.x.x.x eq 21
Federico.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide