cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
286
Views
0
Helpful
2
Replies

SSH from outside through FW to inside switch

john.wright
Level 3
Level 3

We have firewall setup to allow ssh from a single public address to one of our switches inside the firewall.

I had Cisco TAC examine acl rules and all is well.

However the ssh connection always times out.

SSH works fine inside.

Anybody know what could be the problem?

2 Replies 2

Tim Y
Level 1
Level 1

Hi,

Can you post the configuration? I'd want to verify the ACL and NAT.

If those check out then I'd ask if Unicase RPF is enabled, if the routing inside is symmetrical, if there are any ACLs configured on the switch that prevent SSH from a certain source IP (the NAT'd IP)

Regards,

Tim

We would also want to check to determine whether access-class was configured, and if so what it permits and what it denies, which might be what Tim meant about ACLs or might be different. So posting the config would be helpful.

HTH

Rick

HTH

Rick
Review Cisco Networking for a $25 gift card