comp.security.firewalls
Affichage de l'article :
Re: Allow rdp access on pix 501

Date : Le 01 avril 2008
From : Walter Roberson
Sujet : Re: Allow rdp access on pix 501

In article ,
joseph.rosario@gmail.com wrote:
>I am a general pix user who needs help with creating an accesslist
>command for port 1389 (rdp).
>Usually i send the vpn client with credentials to establish the vpn
>connection. I have the remote ip so i just need help creating the
>command to only allow this single remote ip


access-list out2in permit host XXX.XXX.XXX.XXX interface outside eq 1389
access-group out2in in interface outside
static (inside,outside) tcp interface 1389 YYY.YYY.YYY.YYY 1389

where XXX.XXX.XXX.XXX is the remote IP and YYY.YYY.YYY.YYY
is the internal IP of the system rdp is to be permitted to.

Note: if you have an existing access-group against your outside
interface, you will need to merge the access-list entry in to the
appropriate access-list.


Posez vos questions, réponses et remarques sur les forums de FrameIP



mot clé : rdp 501 pix access allow ipv6 voip tcpip comp re firewalls ip security on ipv4 vpn

Copyright © 2003-2010 FrameIP TcpIP. Tous droits réservés. Les marques et marques commerciales mentionnées appartiennent à leurs propriétaires respectifs. L'utilisation de ce site Web TcpIP implique l'acceptation des conditions d'utilisation et du règlement sur le respect de la vie privée.
Sécurité entreprise Comparatif Adsl SSII Reseaux Sécurité Test ADSL