access-list Outside_mpc extended permit ip
any interface inside
access-list Outside_access_in extended permit tcp any host a.b.c.148 eq www
access-list Outside_access_in extended permit tcp any host a.b.c.148 eq ftp
access-list Outside_access_in extended permit tcp any host a.b.c.148 eq ftp-data
access-list Outside_access_in extended permit tcp any host a.b.c.148 eq https
access-list Outside_access_in extended permit tcp any host a.b.c.148 eq imap4
access-list Outside_access_in extended permit tcp any host a.b.c.148 eq lotusnotes
access-list Outside_access_in extended permit tcp any host a.b.c.148 eq pop3
access-list Outside_access_in extended permit tcp any host a.b.c.148 eq smtp
access-list Outside_access_in extended permit tcp any host a.b.c.149 eq www
access-list Outside_access_in extended permit tcp any host a.b.c.149 eq ftp
access-list Outside_access_in extended permit tcp any host a.b.c.149 eq ftp-data
access-list Outside_access_in extended permit tcp any host a.b.c.149 eq
https
access-list Outside_access_in extended permit tcp any host a.b.c.149 eq imap4
access-list Outside_access_in extended permit tcp any host a.b.c.149 eq sqlnet
access-list Outside_access_in extended permit tcp any host a.b.c.149 eq ssh
access-list Outside_access_in extended permit tcp 4.16.10.0 255.255.255.0 any eq smtp
access-list Outside_access_in extended permit udp any host a.b.c.148 eq domain
access-list Outside_access_in extended permit udp any host a.b.c.148 eq isakmp
access-list Outside_access_in extended permit tcp any host a.b.c.148
access-list Outside_access_in extended permit udp any host a.b.c.149 eq domain
access-list Outside_access_in extended permit tcp 4.16.10.0 255.255.255.0 any
pager lines 24
logging enable
logging asdm informational
mtu Outside 1500
mtu inside 1500
mtu DMZ 1500
icmp permit any unreachable inside
icmp permit any time-exceeded inside
icmp permit any inside
asdm image
flash:/asdm
no asdm history enable
arp timeout 14400
global (Outside) 2 4.16.10.0-4.16.10.255 netmask 255.255.255.0
global (Outside) 1 interface
global (DMZ) 1 4.16.11.0-4.16.11.254 netmask 255.255.255.248
nat (inside) 1 4.16.10.0 255.255.255.0
static (DMZ,Outside) a.b.c.148 4.16.11.252 netmask 255.255.255.255
static (DMZ,Outside) a.b.c.149 4.16.11.251 netmask 255.255.255.255
access-group Outside_access_in in interface Outside
route Outside 0.0.0.0 0.0.0.0 a.b.c.145 1
route DMZ a.b.c.148 255.255.255.255 4.16.11.253 2
route DMZ 4.16.10.151 255.255.255.255 4.16.11.253 2
route DMZ 4.16.10.252 255.255.255.255 4.16.11.253 2
route DMZ a.b.c.149 255.255.255.255 4.16.11.253 2
!
class-map Outside-class
match access-list Outside_mpc
class-map class_http
match port tcp eq ftp
class-map inspection_default
match default-inspection-traffic
!bhbbb
!
policy-map global_policy
class
inspection_default
inspect ftp
inspect http
inspect esmtp
class class_http
inspect http
policy-map Accessserver
class Outside-class
inspect http
!
service-policy global_policy global
service-policy Accessserver interface Outside
: end
PIX#
Be a PS3 game guru.
Get your game face on with
the latest PS3 news and previews at Yahoo! Games._______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards