1-67
Cisco ASA Series CLI Configuration Guide
Chapter 1 Configuring Clientless SSL VPN
Configuring Port Forwarding
Step 3
port-forward {
list_name local_port remote_server
remote_port description
}
Example:
hostname(config)#
webvpn
hostname(config-webvpn)#
port-forward
SalesGroupPorts 20143 IMAP4Sserver 143 Get Mail
hostname(config-webvpn)#
port-forward
SalesGroupPorts 20025 SMTPSserver 25 Send Mail
hostname(config-webvpn)#
port-forward
SalesGroupPorts 20022 DDTSserver 22 DDTS over SSH
hostname(config-webvpn)#
port-forward
SalesGroupPorts 20023 Telnetserver 23 Telnet
Adds a port forwarding entry to a list.
•
list_name—
Name for a set of applications
(technically, a set of forwarded TCP ports) for
users of clientless SSL VPN sessions to access.
The ASA creates a list using the name you enter
if it does not recognize it. Otherwise, it adds the
port forwarding entry to the list. Maximum 64
characters.
•
local_port—
Port that listens for TCP traffic for
an application running on the user’s computer.
You can use a local port number only once for
each port forwarding list. Enter a port number in
the range 1-65535 or port name. To avoid
conflicts with existing services, use a port
number greater than 1024.
•
remote_server—
DNS name or IP address of the
remote server for an application. The IP address
can be in IPv4 or IPv6 format. We recommend a
DNS name so that you do not have to configure
the client applications for a specific IP address.
Note
The DNS name must match the one assigned
to the tunnel group to establish the tunnel
and resolve to an IP address, per the
instructions in the previous section. The
default setting for both the
domain-name
group
and
dns-group
commands described
in that section is DefaultDNS.
•
remote_port—
Port to connect to for this
application on the remote server. This is the
actual port the application uses. Enter a port
number in the range 1-65535 or port name.
•
description—
Application name or short
description that displays on the end user Port
Forwarding Java applet screen. Maximum 64
characters.
Shows how to create a port forwarding list called
SalesGroupPorts that provides access to these
applications.
Step 4
(Optional)
no port-forward
list_name local_port
Removes an entry from the list, specifying both the
list and the local port.
Command
Purpose
Summary of Contents for 5505 - ASA Firewall Edition Bundle
Page 28: ...Glossary GL 24 Cisco ASA Series CLI Configuration Guide ...
Page 61: ...P A R T 1 Getting Started with the ASA ...
Page 62: ......
Page 219: ...P A R T 2 Configuring High Availability and Scalability ...
Page 220: ......
Page 403: ...P A R T 2 Configuring Interfaces ...
Page 404: ......
Page 499: ...P A R T 2 Configuring Basic Settings ...
Page 500: ......
Page 533: ...P A R T 2 Configuring Objects and Access Lists ...
Page 534: ......
Page 601: ...P A R T 2 Configuring IP Routing ...
Page 602: ......
Page 745: ...P A R T 2 Configuring Network Address Translation ...
Page 746: ......
Page 845: ...P A R T 2 Configuring AAA Servers and the Local Database ...
Page 846: ......
Page 981: ...P A R T 2 Configuring Access Control ...
Page 982: ......
Page 1061: ...P A R T 2 Configuring Service Policies Using the Modular Policy Framework ...
Page 1062: ......
Page 1093: ...P A R T 2 Configuring Application Inspection ...
Page 1094: ......
Page 1191: ...P A R T 2 Configuring Unified Communications ...
Page 1192: ......
Page 1333: ...P A R T 2 Configuring Connection Settings and QoS ...
Page 1334: ......
Page 1379: ...P A R T 2 Configuring Advanced Network Protection ...
Page 1380: ......
Page 1475: ...P A R T 2 Configuring Modules ...
Page 1476: ......
Page 1549: ...P A R T 2 Configuring VPN ...
Page 1550: ......
Page 1965: ...P A R T 2 Configuring Logging SNMP and Smart Call Home ...
Page 1966: ......
Page 2059: ...P A R T 2 System Administration ...
Page 2060: ......
Page 2098: ...1 8 Cisco ASA Series CLI Configuration Guide Chapter 1 Troubleshooting Viewing the Coredump ...
Page 2099: ...P A R T 2 Reference ...
Page 2100: ......