Re: [fw-wiz] Re-directing Outbound HTTP Traffic on PIX



Cisco PIX Documentation:
Using nat, global, static, conduit, and access-list Commands and Port
Redirection(Forwarding) on PIX
http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a0080094aad.shtml


The command that you may need should be similar to (from the link):

static (inside,outside) tcp 172.18.124.208 80 10.1.1.7 8080 netmask
255.255.255.255 0 0


Hope it helps,

On 07/11/06, Ryan Schmidt <silwest@xxxxxxxxx> wrote:
I have a general newbie question about redirecting HTTP traffic on a
Pix firewall. HTTP traffic is generally sent to a webserver on port
80. I want to take all HTTP traffic on it's way to the internet and
redirect it to a specific IP address (web content filtering service)
on Port 8080. How can I acoomplish this using a PIX firewall?

Thanks,

Ryan
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards

_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: Open port PIX 501
    ... :i can't open the port in my PIX. ... :I need open the port 1000 to point to the IP 10.254.254.222. ... in practice only DNS servers doing zone transfers need tcp. ... of UDP, it would be a highly unusual client which did not stick ...
    (comp.dcom.sys.cisco)
  • Re: Testing A Cisco PIX 501
    ... and it uses let's say 53 DNS port or HTTP 80 port ... Optionally write a test bench. ... I would like to, for example, be safer from trojans. ... my PIX, my PC is also cabled to the PIX and my wireless router is also ...
    (comp.security.firewalls)
  • RE: [fw-wiz] ? re: PIX port translation config
    ... however inorder to perform the port mapping you need to use the following ... Also make sure you do not have 'sysopt noproxyarp dmz' defined or the pix ... wont proxy arp on that interface. ... > and need assistence with the config. ...
    (Firewall-Wizards)
  • Re: Allowing icomming connections?
    ... >I am suspecting that one of my users is allowing an Internet IP Addy ... I see many of the below lines (PIX log) where the UDP ... Port on C.C.C.C remains constant as well, ... ports on A.A.A.A increment and that that tells you "that NAT remains active". ...
    (comp.dcom.sys.cisco)
  • Re: SBS Prem on dual homed system HELP
    ... I opened the 443 port and was not able to connect. ... PIX and I heard that it can be stopping the traffic. ... > "chris landman" wrote in message ... You could of course increase the protection by adding ISA. ...
    (microsoft.public.windows.server.sbs)