cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
500
Views
0
Helpful
1
Replies

Static nat one to many question

john.wright
Level 3
Level 3

Hope someone can help with this.                 

I have a requirment to allow a vendor access to a lot of devices on a subinter face DMZ which I created just for their devices.

However I only have one public address left to allow access from the outside.

They need specific udp and tcp ports open depending on which device they are accessing. I created object-group service config for all the ports but not sure how to actually allow the outside access into the DMZ.

Example

device 192.168.13.6 needs access both ways on udp ports 18810,18803,18801 and 18001. And this same device needs access both ways on tcp port18802.

And device 192.168.13.2 needs another set of udp and tcp ports open.

All of the devices have variations like this.

What is the correct static nat config to allow the vendor access from outside to many addr in this DMZ?

1 Reply 1

john.wright
Level 3
Level 3

I forgot to mention that we are running 8.2 code on 5510.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card