Allowing Inbound Traffic From Specified Range Of Outside Hosts - Cisco ISA550 Administration Manual

Isa500 series integrated security appliances
Hide thumbs Also See for ISA550:
Table of Contents

Advertisement

Firewall
Firewall and NAT Rule Configuration Examples
STEP 1
STEP 2
STEP 3
Cisco ISA500 Series Integrated Security Appliances Administration Guide
Match Action
Allowing Inbound Traffic from Specified Range of Outside
Hosts
Use Case: You want to allow incoming video conferencing to be initiated from a
restricted range of outside IP addresses (132. 1 77.88.2 to 132. 1 77.88.254). In the
example, connections for CU-SeeMe (an Internet video-conferencing client) are
allowed only from a specified range of external IP addresses.
Solution: Perform the following tasks to complete the configuration:
Go to the Networking > Address Management page to create an address object
with the range 132. 1 77.88.2 to 132. 1 77.88.254 called "OutsideNetwork" and a host
address object with the IP 192. 1 68.75. 1 10 called "InternalIP."
Go to the Firewall > NAT > Port Forwarding page to create a port forwarding rule
as follows.
Original Service
Translated Service
Translated IP
WAN
WAN IP
Enable Port
Forwarding
Create Firewall Rule
Go to the Firewall > Access Control > ACL Rules page and create the ACL rule as
described below.
From Zone
To Zone
Permit
CU-SEEME
CU-SEEME
InternalIP
WAN1
WAN1_IP
On
Off
WAN
LAN
6
231

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Isa550wIsa570Isa570w

Table of Contents