cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1328
Views
0
Helpful
4
Replies

Static NAT to allow RDP through my firewall

cljennings25
Level 1
Level 1

I have a comcast business modem/router 71.194.1.31 (public) with internal address of 10.1.10.1. My firewall "PIX" outside interface is 10.1.10.3 with all routes going to 10.1.10.1. The modem/router is performing no static route function.

 

interface Ethernet0
 description outside interface
 nameif outside
 security-level 0
 ip address 10.1.10.3 255.255.255.0
 ospf cost 10

interface Ethernet1
 description inside interface
 nameif inside
 security-level 100
 ip address 10.1.1.1 255.255.0.0
 ospf cost 10

route outside 0.0.0.0 0.0.0.0 10.1.10.1 1

I am trying to figure our how I can route RDP traffic to a server of 10.1.2.243? So I need the public address "71.194.1.31" to NAT to 10.1.2.243 with out affecting anything else. My PIX does not support PAT, its old.

 

I need RDP 3389 - 71.194.1.31 "public" --> 10.1.10.3 "outside" --> 10.1.1.1 "inside" --> 10.1.2.243 "server"

 

Thank you.

4 Replies 4

cljennings25
Level 1
Level 1
Any help would be appreciated.

er.vansh17091
Level 1
Level 1

Hi,

 

You have to create separate policy for both inside and outside

Could you explain?

Hi,

answer for your issue can find in below thread. also i suggest to go with new FTD, Firepower or ASA model because of PIX firewalls are not in production and support list now.

https://community.cisco.com/t5/firewalls/port-forwarding-on-pix-515e/td-p/1358019

 

good luck

Please rate this and mark as solution/answer, if this resolved your issue
Good luck
KB
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card