Friday, March 29, 2019

Source locked port forwarding on Cisco asa 5506-x. What I’ve tried and hasn’t worked.

Hi all,

I have minimal experience with Cisco outside or reflashing APs and configuring them. Recently I landed a client and until we get them into a better firewall I have to administer their current one a Cisco asa-5506-x. It doesn’t have adsm enable and I can’t seem to find the image to enable it.

Anyways, I’ve scoured the net trying to find out to do a port forward that source locks to our office. I’ll list the players and someone can hopefully help I’m regards to how to make it work and I’ll list what I’ve done.

Our wan ip (not actual) 777.777.7.7 Their external IP 555.555.5.5 Internal server ip to RDP to 192.168.1.1 Desired external facing port 33891 Redirected port 3389

I’ve tried the following command with no luck

Access-list inbound extended permit tcp host 777.777.7.7 host 555.555.5.5 eq 33891

Then I tried the following command in config mode and exec mode and got incorrect parameters with the highlight carrot

Static (inside,outside) static (inside,outside) tcp interface 33891 192.168.1.1 3389 netmask 255.255.255

I entered that as a separate command and got the error.

Is there anyone out there who can help?

Thanks a million



No comments:

Post a Comment