Cisco ASA - opening ports/NAT rules

From: 6PE_2.0 <spycharlies_at_gmail.com>
Date: Thu, 6 Dec 2012 11:55:35 -0700

Hello Mates, i have got a requirement to open ports on our ASA for
Microsoft live meeting 2007. My ASA knowledge is very limited! and our
firewall expert is temporarily unavailable

I have consulted Microsoft documentation, which says certain ports / IP's
etc.. needs to be open

http://support.microsoft.com/kb/2312151

Assuming my public Ip is 1.1.1.1 and my inside range is 192.168.0.0/16.

I have a rule for outside coming in with the following ...

access-list outside_coming_in extended permit tcp any host 1.1.1.1 eq 5061
access-list outside_coming_in extended permit tcp any host 1.1.1.1 eq 8057
access-list outside_coming_in extended permit udp any host 1.1.1.1 eq 3478
access-list outside_coming_in extended permit tcp any host 1.1.1.1 eq range
50000 59999
access-list outside_coming_in extended permit udp any host 1.1.1.1 eq range
50000 59999

Secondly, i know i need to permit Inside going out, as well as
inside/outside NAT requirement. This is where i am stuck! I am currently
going through Cisco documentation as well as online forums to give
me leads. Any input including links will be appreciated.

Thanks

Charlie

Blogs and organic groups at http://www.ccie.net
Received on Thu Dec 06 2012 - 11:55:35 ART

This archive was generated by hypermail 2.2.0 : Tue Jan 01 2013 - 09:36:53 ART