ASA 8.4 Example

Access webserver from outside:

asa-8-2-dnat

object network real-host-obj
 host 192.168.1.2
object network mapped-host-obj
 host 1.1.1.1

nat (inside,outside) source static real-host-obj mapped-host-obj

access-list allow-webserver-inside extended permit ip any host 192.168.1.2
access-group allow-webserver-inside in interface outside

To allow unidirectional access:

object network host_192.168.1.3
 host 192.168.1.3

object network host_1.1.1.2
 host 1.1.1.2

nat (outside,inside) source static any any destination static host_1.1.1.2  host_192.168.1.3 uni

access-list outside-acl line 2 extended permit tcp any object host_192.168.1.3 eq 80
Advertisements
This entry was posted in ASA and tagged , , . Bookmark the permalink.

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s