How Do I Permit Specific Traffic Through A Dmz Interface - Cisco ROUTER-SDM-CD User Manual

User guide
Table of Contents

Advertisement

How Do I...

How Do I Permit Specific Traffic Through a DMZ Interface?

Step 1
Step 2
Step 3
Step 4
Step 5
Step 6
Step 7
Step 8
Step 9
Step 10
Step 11
Step 12
Cisco Router and Security Device Manager 2.5 User's Guide
8-18
If you create an access rule in the ACL Editor available in Additional Tasks, you
have complete control over the permit and deny statements in the rule, and you
must ensure that traffic is permitted between VPN peers. The following
statements are examples of the types of statements that should be included in the
configuration to permit VPN traffic:
access-list 105 permit ahp host 123.3.4.5 host 192.168.0.1
access-list 105 permit esp host 123.3.4.5 host 192.168.0.1
access-list 105 permit udp host 123.3.4.5 host 192.168.0.1 eq isakmp
access-list 105 permit udp host 123.3.4.5 host 192.168.0.1 eq
non500-isakmp
Follow the steps below to configure access through your firewall to a web server
on a
DMZ
network:
From the left frame, select Firewall and ACL.
Select Advanced Firewall.
Click Launch the Selected Task.
Click Next.
The Advanced Firewall Interface Configuration screen appears.
In the Interface table, select which interfaces connect to networks inside your
firewall and which interfaces connect to networks outside the firewall.
From the DMZ Interface field, select the interface that connects to your DMZ
network.
Click Next>.
In the IP Address field, enter the IP address or range of IP addresses of your web
server(s).
From the Service field, select TCP.
In the Port field, enter 80 or www.
Click Next>.
Click Finish.
Chapter 8
Create Firewall
OL-4015-12

Advertisement

Table of Contents
loading

This manual is also suitable for:

Router and security device manager 2.5

Table of Contents