cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
535
Views
5
Helpful
1
Replies

Why ASA display TCP 80 as www not http or 80?

Adam David
Level 1
Level 1

Hi all, I have 2 simple question.

1. I was  wondering why Cisco ASA display TCP 80 as www in the firewall, not the  original port number, 80.

ASA5520# sh run | i eq 80
ASA5520# sh run | i eq www
port-object eq www
port-object eq www
port-object eq www
access-list acl-in extended permit tcp host ABC host DEF eq www

or TCP 1494 as citrix-ica.

ASA5520# sh run | i 1494
ASA5520# sh run | i citrix-ica
access-list acl-out extended permit tcp host ABC host DEF eq citrix-ica

According to IANA, 1494 is ica, not citrix-ica

http://www.iana.org/assignments/port-numbers

I have a problem to search firewall rules by filter it by port number, and then realize that it has been converted to service name

2. Is there any way to display this services as number, not by name?

Thanks in advance

1 Reply 1

Jennifer Halim
Cisco Employee
Cisco Employee

Unfortunately there are some predefined service names on ASA that can't be disabled.

Please find the predefined service name for your reference:

http://www.cisco.com/en/US/docs/security/asa/asa82/command/reference/p.html#wp1918942

Review Cisco Networking for a $25 gift card