Announcement

Collapse
No announcement yet.

Help with asa 5505 rules for rpc/https and vpn

Collapse
X
  • Filter
  • Time
  • Show
Clear All
new posts

  • Help with asa 5505 rules for rpc/https and vpn

    I have been unscuccessful in setting up some basic NAT/Access rules to allow rpc/https for exchange email and vpn access. Here is a summary of my rules list:

    I have a Cisco ASA 5505 that I need to setup a route/rule to allow rpc/https email traffic to an exchange server on my internal network. The exchange server address is 192.168.69.11

    I added routes:

    static (external, internal) tcp 192.168.69.11 https 19*.xxx.xxx.xxx https netmask 255...
    static (internal, external) tcp interface https 192.168.69.11 https netmask 255...
    static (internal, external) tcp interface smtp 192.168.69.11 https netmask 255...

    and access lists:

    access-list outside_access_in extend permit tcp any host 192.168.69.11 eq https
    access-list outside_access_in extend permit tcp any host 192.168.69.11 eq smtp
    access-list from-out extend permit tcp any inteface outside eq smtp
    access-list from-out extend permit tcp any host 19x.xxx.xxx.xxx eq https

    Any help would be greatly appreciated. I am not as savvy with the ASA's as i am with Linksys and other brands of firewalls.

    Thanks

  • #2
    Re: Help with asa 5505 rules for rpc/https and vpn

    It would help to post the entire config, but doing a "Sh running access-group" would let us see how you have the access lists associated with your interfaces.

    Just blank out the essential data.

    Comment


    • #3
      Re: Help with asa 5505 rules for rpc/https and vpn

      Youre asking this in the wrong section, this is a security question, and should of been posted in Cisco Security PIX/ASA/VPN . Probably will get more feedback there. Anyway dont bothera mod will probably move it there.

      Regards
      Kevin

      Comment

      Working...
      X