[c-nsp] ASA

madunix at gmail.com madunix at gmail.com
Wed Feb 11 03:26:58 EST 2015


I would like to block the following ports: 135,137,138,139,445,593,4444
 tcp/udp on my Firewall

interface GigabitEthernet0/0
 nameif outside
 security-level 0
 ip address 10.16.0.4 255.255.255.0 standby 10.16.0.5
!
interface GigabitEthernet0/1
 nameif inside
 security-level 100
 ip address 10.6.80.5 255.255.255.0 standby 10.6.80.6
!

access-group outside-in in interface outside
route outside 10.1.0.0 255.255.0.0 10.16.0.250 1
route outside 10.1.0.0 255.255.0.0 10.16.1.250 10

WAN-ASA# sh ver

Cisco Adaptive Security Appliance Software Version 7.2(3) Device Manager
Version 5.2(3)

Regards,


More information about the cisco-nsp mailing list