Boy, had to scan the archives to find this. I don't even know how valid this is any more really, as the IOS config has moved on quite significantly from there, but I've attached the HTML file I made up years ago and a small picture to go along with ...
The 302014 syslog messages are fairly standard when a TCP connection through the firewall is torn down. Remember that the ASA is a stateful firewall so it keeps track of the state of every TCP connection that comes through it. If at some point some...
Only thing I can think of is that the 192.168.3.x web server doesn't have a default route pointing back towards the inside interface of the PIX. It must have a route for the 192.168.1.x network cause you can ping it from the PIX itself, but traffic ...
You won't be able to create another static mapping the 192.168.1.9 internal address to the same external IP address as the .8 server. If you have a spare public IP address allocated from your ISP then you can just create a second static for the outg...
The FWSM (or the PIX/ASA) does NOT allow FTP proxy connections. These are seen as a security risk and therefore denied. If you look at the syslog messages, you'll see a message similar to: *****%FWSM-4-406002: FTP port command different address: 1....