Cisco ASA 5505 Configuration Manual page 328

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Adding a Public Server
Adding a Public Server
You can add a public server that enables static NAT and creates a fixed translation of a real address to a
mapped address, or you can add a public server that enables static NAT with port address translation and
lets you specify a real and mapped protocol (TCP or UDP) and port.
Adding a Public Server that Enables Static NAT
To add a public server that creates a fixed translation of a real address to a mapped address, perform the
following steps:
In the Configuration > Firewall > Public Servers pane, click Add to add a new server.
Step 1
The Add Public Server dialog box appears.
From the Private Interface drop-down menu, select the name of the private interface to which the real
Step 2
server is connected.
In the Private IP address field, enter the real IP address of the server (IPv4 only).
Step 3
In the Private Service field, click Browse ... to display the Browse Service dialog box, choose the actual
Step 4
service that is exposed to the outside, and click OK.
Optionally, from the Browse Service dialog box you can click Add to create a new service or service
group. Multiple services from various ports can be opened to the outside. For more information about
service objects and service groups, see the
on page
From the Public Interface drop-down menu, enter the interface through which users from the outside can
Step 5
access the real server.
In the Public Address field, enter the mapped IP address of the server, which is the address that is seen
Step 6
by the outside user.
(Optional) To enable static PAT, check the Specify if Public Service is different from private service
Step 7
check box .
Click OK. The configuration appears in the main pane.
Step 8
Click Apply to generate static NAT and a corresponding access rule for the traffic flow and to save the
Step 9
configuration.
For information about static NAT, see the
Adding a Public Server that Enables Static NAT with Port Address Translation
To add a public server that lets you specify a real and mapped protocol (TCP or UDP) to a port, perform
the following steps:
In the Configuration > Firewall > Public Servers pane, click Add to add a new server.
Step 1
Cisco ASA 5500 Series Configuration Guide using ASDM
14-2
Adding a Public Server that Enables Static NAT, page 14-2
Adding a Public Server that Enables Static NAT with Port Address Translation, page 14-2
13-5.
"Configuring Service Objects and Service Groups" section
"Information About Static NAT" section on page
Chapter 14
Configuring Public Servers
26-3.
OL-20339-01

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents