2 Server with 1 Public IP (Port Forwading) Details Inside thanks

Hi,
I would like to ask how to setup 2 servers with 1 public IP??
Server 1 is Citrix
Server 2 is FTP server
1 public IP
Tried this command on Cisco ASA 5510 but it doesn't work with 2 servers, But 1 server - 1 public IP is working.
1 server - 1 public IP
object-group service test1 tcp
port-object eq www
access-list outside_access_in extended permit tcp any host 111.44.77.121 object-
group test1
static (inside,outside) 111.44.77.121 192.168.1.1 netmask 255.255.255.255
2 server - 1 public ip
object-group service test1 tcp
port-object eq www
object-group service test2 tcp
port-object eq http
access-list SMTP-Services extended permit ip host 111.44.77.121 host 192.168.1.1
access-list SMTP-Services2 extended permit ip host 111.44.77.121 host 192.168.1.2
static (inside,outside) 111.44.77.121 192.168.1.1 netmask 255.255.255.255
static (inside,outside) 111.44.77.121 192.168.1.2 netmask 255.255.255.255
Thank you

"then use a different port number on the inside real IP." - does it mean I will depend on my port number(inside) or what server port number will be ?
So now I'm just Curious... Currently If I type this 111.44.77.121 (public IP) to my browser it will direct me to private (inside add).
Now my Question is If I Configure 2servers to 1 public IP how can I access It??
Example:
Browser - 111.44.77.121:80 ? and the other one will be 111.44.77.121:8881
thank you

Similar Messages

  • Use hyper-v manager to Hyper-V server with public IP

    Hello,
    I have recently purchased a dedicated server online, and a fresh copy of hyper-v has been installed. This is the free version, and not what's included with Windows Server 2012 R2. I have a quick question. I can RDP into my server, which is located on the
    Internet. When I try to connect an MMC snapin, like Hyper-V manager, it is inaccessible. Is there a way to manage hyper-v servers found on the Internet? And, if so, is this a good idea?
    Thanks to all that reply,
    Mike

    Thanks for the replies, 
    All of these tools seem to work for computers on the same network. I am trying to connect to a hyper-v server on the Internet using hyper-v manager.
    Mike
    Mike,
    Put your thinking cap on buddy :)
    You say you can RDP to your Hyper-V host. I say do NOT do that for common daily tasks. Not a best practice.
    You say you want to manage Hyper-V on your remote Hyper-V host. I say do it from a Win8.1 VM on the host.
    You say I have no VMs on my new remote Hyper-V host. I say build your first VM via Powershell. Once it's done, RDP to the VM not the host, and manage the host from the VM.
    Sam Boutros, Senior Consultant, Software Logic, KOP, PA http://superwidgets.wordpress.com (Please take a moment to Vote as Helpful and/or Mark as Answer, where applicable) _________________________________________________________________________________
    Powershell: Learn it before it's an emergency http://technet.microsoft.com/en-us/scriptcenter/powershell.aspx http://technet.microsoft.com/en-us/scriptcenter/dd793612.aspx

  • Cisco PT 2 router w/ 1 modem each conencted to cloud and 1 router as ISP. R1 and R2 problem details inside thanks

    Hi,
    i have 2 routers w/ 1 modem each connected to cloud then to ISP router.
    So my problem is ISP router can ping R1 and R2
    R1 can Ping ISP router same as R2
    But the problem is R1 can't ping R2 vise versa.
    Details
    ISP: 1.1.1.1 /24
    R1: 1.1.1.2 /24
    R2: 1.1.1.3 /24
    -Cloud
    Modem1> Et6
    Modem2> Et6
    Tried:
    ISP:
    ip route 1.1.1.0 255.255.255.0 f0/0
    ip route 1.1.1.2 255.255.255.0 f0/0
    ip route 1.1.1.3 255.255.255.0 f0/0
    R1 and R2
    ip route 0.0.0.0 0.0.0.0 f0/0 
    or
    r1 - ip route 1.1.1.2 255.255.255.0 f0/0
    r2 - ip route 1.1.1.3 255.255.255.0 f0/0
    i think r1 message goes to ISP router  but ISP didn't route to r2.
    also i configured access list permit all tcp udp and IP.
    please see the attached file
    thank you in advance

    ISP
    Ip route
    S       1.1.0.0 is directly connected, FastEthernet0/0
    interface FastEthernet0/0
     ip address 1.1.1.1 255.255.255.0
     ip access-group 100 out
     duplex auto
     speed auto
     ipv6 ospf cost 1
    access-list 100 permit tcp any any
    access-list 100 permit udp any any
    access-list 100 permit ip any any

  • How can I connect to sun fire v125 with serial mgr port by hyperterminal

    Hi there!
    My c.o. got a sun fire v125 server.My mission is finish setting up the server.But as I followed the sun
    fire v125's document, it aint be connected to this server with serial mgr port by using windows xp hyperterminal .
    My step as:
    step1. Find the original RJ45 net cable from the v125 box, and put one side into
    Serial MGR Port of V125.
    step2. Combined the RJ45 net cable's other side with DB-9 converter,
    then plug the DB-9 converter into the PC's serial port(9 pins).
    step3. start the pc(windows xp sp2), and then creat a hyperterminal link in COM1 as:
    Bits/Sec--9600, DataBits--8, Parity--None, Stop bits--1, Flow control--Xon/Xoff
    And then pause connect. make it hang up.
    step4. push the sun fire v125 power button. after 1mins, resume the hyperterminal,
    connect to the v125.
    as above all is all my step here. Somewhere incorrect?if theres no problem, why can't I receive the
    "sc> " promote?
    Theres only one thing what i can do is input from keyboard....?
    I had known that there will be promoted the "sc> " after you start the connection of hyperterminal with the correct steps?
    BTW,I had input "#." with enter key, but it doesnt work!
    Is there anybody met this problem as mine? Or can you give me some hits?
    Thank you for your reading.
    Sinceley Regards
    Maqintoshi. 2008.2.7 pm4:10
    Edited by: maqintoshi on Feb 6, 2008 11:51 PM

    Im sorry for replying so late.
    I'd solved it long time ago.
    finally I found I made a mistake that I connect the Serialport Cable which came from PC
    to the RJ45(NIC) port which came from Sun Server :-@
    If you still can not get the prompts, check these parameters of your hyperterminal:
    connect a terminal or a terminal emulator (PC or workstation) to the SC serial management port.
    Configure the terminal or terminal emulator with these settings:
    * 9600 baud
    * 8 bits
    * No parity
    * 1 Stop bit
    * No handshaking

  • SiteCam server with AP Extreme ethernet

    How do I setup a SiteCam live video server with the ethernet ports on the back of AirPort Extreme. I have static IPs for 5 mac computers. I used to run dsl unit to a switch and cable to the sitecam server. I then used a switch port to the airport. I'd like to not have to use a switch and use the ethernet ports on AP

    You could configure the AirPort Extreme base station (AEBS) to act as a bridge (not sharing a single IP address). In that mode, the AEBS is essentially a switch.

  • WRT350N Print Server? Samba Printer Port

    Issue: I have a hard drive attached and shared out on my WRT350N -- works great.. When i browse the share device from a Vista or XP machine i see a directory (shares) called Config and one called Printers and Faxes -- neither of these two i created during the setup of the router.. So -- i double click upon the Printer and Faxes share and it opens up to a blank page -- right clicking gives me the option to add printer and to view server properties.. the properties show a print server with Samba Printer Port.. plus a ADD PRINTER option.. well i get all excited about sharing my network printer on this thing.. only to add printer and get a error about not enough access rights.. nothing i do will grant me access to add a printer.. is this even possible? Is this a flaw in the product? Or a Windows mishap?

    I did get the direct IP pringing to work, and the Samba, but it has to have the username/password in the string:
    smb://userName:password@workgroup/computer/printer

  • How can i access dmz server via public ip from inside?

    hi all !
    As shown in Figure,how can i access the server in dmz zone via public?
    i can access it via private ip 192.168.1.1 now,but i can't access it via 101.100.1.2.
    who can help me ?
    thank you !

    Hi,
    You would have to configure Static NAT from DMZ to INSIDE for the server in the same way you have done for DMZ to OUTSIDE.
    Basically in the following way for example
    object network DMZ-WEB
    host 192.168.1.1
    nat (dmz,inside) static 101.100.1.2
    This would enable your users on the "inside" to access the "dmz" server with the public IP address. And naturally only with the public IP address after this NAT.
    Hope this helps
    Please do remember to mark a reply as the correct answer if it answered your question.
    Feel free to ask more if needed
    - Jouni

  • How to use the same OC4j server with different port number

    How to use the same OC4j server with different port numbers..?
    I have to OC4J installed on my machine on different hard disk drives....
    I want to be able to run both the server simultaneously..?
    is it possible ..it yes then how..?
    for that i have changed the port number of one server...
    but when i am trying to start the other server with different port number..it says that JVM -Bind already...
    Is there any clues...?
    Nilesh G

    In the config directory:
    default-web-site.xml: Change the port the HTTP listener listens on
    jms.xml: Change the port the JMS service listens on
    rmi.xml: Change the port the ORMI listener listens on.
    Or, you can add another web-site.xml file, and deploy your applications to 1 server, and bind the web applications to the different web sites. This way you only have to deploy your applications to 1 place.
    Rob
    Oracle

  • Agentry Client 6.1.3 installation with preconfigure SMP server name et TCP Port

    Hi,
    I'm looking for a way to deploy an Agentry Client (version 6.1.3.xxx) on multiple devices without having to manually specify the SMP server name and TCP port.
    When the user get's it, I just want him to only enter his credential to start the first synch/config process.
    Anyway do easily do that?
    Thanks for your help!
    Eric

    Hi Bill,
    Here's what I did in more detail so you can pin point what I do wrong (hopefully :-)).
    First I extracted the branding files of the Agentry_6.1.3.10212_ClientWin32.exe.
    Agentry_6.1.3.10212_ClientWin32.exe /Branding=D:\Temp\Agentry.
    This is the directory and file structure I got out of it.
    The 2 directories are created as you mentionned.
    If I browse to the AgentryClient_Win32 directory I see thoses files:
    If I browse the Installer directory I see :
    The Include and Plugins directories are as follow :
    I still can't find the AgentryClient.exe.config file???
    Eric

  • HT1552 Im setting up a server with the port 25565 and im doing it with Port Map but the problwem is i cant seem to get it to work with my router. it goes through my macmini to the router and the expansion hardrive

    Im setting up a server with the port 25565 and im doing it with Port Map but the problwem is i cant seem to get it to work with my router. it goes through my macmini to the router and the expansion hardrive

    Im setting up a server with the port 25565 and im doing it with Port Map but the problwem is i cant seem to get it to work with my router. it goes through my macmini to the router and the expansion hardrive

  • Best DNS setup for public-facing Mac server with no NAT?

    What's the best way to set up the DNS server as a member of an existing domain with nameservers elsewhere for a public-facing server with no NAT?
    We own the domain myexample.com and it's name servers and zone files are on a hosted linux server with mail/web server services.
    We now have a Mac server hosted elsewhere and we want it to be a subdomain of our myexample.com i.e. macserver.myexample.com.
    We haven't enabled NAT or DHCP so the Mac server host network IP is a public IP. There is no LAN.
    When setting up the DNS server, what should the primary zone be? macserver.myexample.com, or myexample.com?
    Any advice would be great. Mr Hoffman....are you out there?

    You do need valid DNS services.  But you don't need to provide DNS on the same server.  And if you're not dealing with NAT, things can get easier.
    The easiest approach available is to not run your own DNS services here.   This assumes the OS X Server box is configured on a static IP address, but then that's something OS X Server needs/wants/ expects.
    Use the DNS provided by your domain registrar, and your ISP.    Or maybe on that Linux box, if that's publicly authoritative for the domain.
    Enter the host name and the IP address into the public DNS services that you have configured for the domain, or that you have at your registrar or ISP, or on that Linux box.
    You will need to have your ISP for the static IP configure a PTR record (reverse DNS) for the server, particularly if you're planning to run mail or related.

  • UCS C420M3 server with VIC 1225 , Cant see LOM ethernet ports

    Hi Guyz,
    we have C420M3 server with VIC 1225 connected on PCIe slot, with Fabric Interconnet.
    After installing OS & drivers , vNICs created on VIC 1225 by service profile appear, but 4 gig ports on Server LOM dont appear.
    Any Idea.?
    Thank

    If you integrate your rack server to UCSM, you will be able to use the LOM ports ONLY for Mgmt traffic, that is when you integrate the server in "Dual Wire Mode".
    There is no need (unless you have one for an special reason I am not considering in this very moment) to use the LOM ports once you have integrated the server, precisely cause the VIC 1225 is a not a regular NIC card, nor a regular HBA, it is actually a CNA (Converged Network Adapter) which basically lets you do in one card, what you would do with two (meaning "what you would do with a separate NIC and HBA")
    When you have a VIC card, you actually have the option to create up to 256 virtual interfaces (that's the capability of the hardware, always limited by the OS used, please keep that in mind), that is the reason why, after the server is integrated, you totally depend on the interfaces set in the Service Profile instead of the physical interfaces.
    Find more info here:
    http://www.cisco.com/c/en/us/products/interfaces-modules/unified-computing-system-adapters/models-comparison.html
    Do you have a particular reason for using the LOM ports instead of creating 2 additional virtual interfaces in the Server's Service Profile?
    -Kenny

  • Help with Slow access or NAT to Inside Interface on ASA 9.1

    I am hoping someone can help me figure this out, I did this on the PIX and it worked like a charm, but I am having some difficulty translating the configuration to an ASA.
    In the PIX I performed NAT on outside traffic to a specific inside host (web server) to map to the inside interface so that return traffic would go to the same firewall the traffic came in through, The reason for this configuration was because the gateway of last resort was a different firewall and not the firewall the traffic came in through.
    Now to further give you some history, the gateway of last resort is an ASA running 9.1 (Now), prior to that it was a PIX with v8.0(4), traffic to the aforementioned web server came in through the gateway of last resort), which at the time was the PIX.
    However, for some reason after swapping the PIX for an ASA (same rules, updated NAT rules for 9.1) access to the same web server is slow. Not sure why, but it’s the case. To alleviate the slowness we experienced, and until I can figure out why this occurs on the ASA, I placed a PIX on the network that only listens for traffic for the web server in question. On this PIX I map to the inside interface so that traffic flow works and external clients can access the web server with no issues.
    So two questions, one I would like to use the configuration I have for the web server on the PIX on the ASA to see if that setup on the ASA works better, but having difficulty translating the rules to the ASA.
    Second question, has anyone experienced this type of issue (Slow access with ASA to a web server, but fast with PIX to the same web server)?
    Attached a diagram of what I am currently doing?
    Any help is appreciated.
    Thanks.
    P.S. Addresses in attached picture config are not real, but I know what they translate to.

    Hi,
    To me you it would seem that you are looking for a NAT configurations something like this
    object network SERVER-PUBLIC
    host 197.162.127.6
    object network SERVER-LOCAL
    host 10.0.1.25
    nat (outside,inside) source dynamic any interface destination static SERVER-PUBLIC SERVER-LOCAL
    It will do a NAT for both the source and destination address in a single NAT configurations. It defines that a Dynamic PAT to the "inside" interface will be done for "any" traffic entering from the "outside" WHEN the destination is the SERVER-PUBLIC IP address. Naturally the SERVER-PUBLIC will untranslated to the SERVER-LOCAL in the process as this configuration handles 2 translations.
    I dont know if this changes the situation at all but it should be the configuration format to handle the translation of external host to the internal interface IP address and only apply when this single public IP address is conserned.
    Hope this helps
    Remember to mark the reply as the correct answer if it answered your question. And/or rate helpfull answers.
    Ask more if needed
    - Jouni

  • Creation of multiple listeners with public IP

    Hi,
    ORACLE VERSION : 10.2.0.1
    Operation system : LINUX
    Here i need to configure a listener for the database with different ip with different port no.when i create another listener i am getting this error.And i want the database must connect with both the IP's which i mentioned in the listener.ora file
    Here is my listener.ora file
    # listener.ora Network Configuration File: /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    # Generated by Oracle configuration tools.
    SID_LIST_LISTENER =
      (SID_LIST =
        (SID_DESC =
          (SID_NAME = PLSExtProc)
          (ORACLE_HOME = /u01/app/oracle/product/10.2.0/db_1)
          (PROGRAM = extproc)
    LISTENER =
      (DESCRIPTION_LIST =
        (DESCRIPTION =
          (ADDRESS = (PROTOCOL = IPC)(KEY = EXTPROC1))
          (ADDRESS = (PROTOCOL = TCP)(HOST = vtl3199db)(PORT = 1521))
    LISTENER_PUB =
      (DESCRIPTION_LIST =
        (DESCRIPTION =
          (ADDRESS = (PROTOCOL = IPC)(KEY = EXTPROC1))
          (ADDRESS = (PROTOCOL = TCP)(HOST = 122.183.83.130)(PORT = 1522))
    SID_LIST_LISTENER_PUB =
      (SID_LIST =
        (SID_DESC =
          (SID_NAME = CAPTURE)
          (ORACLE_HOME = /u01/app/oracle/product/10.2.0/db_1)
          (PROGRAM = extproc)
      )and the error what i am getting is
    [oracle@vtl3199db admin]$ lsnrctl status LIS_PUB
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 19-OCT-2010 05:11:37
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    STATUS of the LISTENER
    Alias                     LISTENER
    Version                   TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    Start Date                19-OCT-2010 04:52:47
    Uptime                    0 days 0 hr. 18 min. 49 sec
    Trace Level               off
    Security                  ON: Local OS Authentication
    SNMP                      OFF
    Listener Parameter File   /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Listener Log File         /u01/app/oracle/product/10.2.0/db_1/network/log/listener.log
    Listening Endpoints Summary...
      (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
      (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=vtl3199db)(PORT=1521)))
    Services Summary...
    Service "PLSExtProc" has 1 instance(s).
      Instance "PLSExtProc", status UNKNOWN, has 1 handler(s) for this service...
    Service "capture" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    Service "captureXDB" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    Service "capture_XPT" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    The command completed successfully
    [oracle@vtl3199db admin]$ lsnrctl services LIS_PUB
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 19-OCT-2010 05:11:52
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    Services Summary...
    Service "PLSExtProc" has 1 instance(s).
      Instance "PLSExtProc", status UNKNOWN, has 1 handler(s) for this service...
        Handler(s):
          "DEDICATED" established:0 refused:0
             LOCAL SERVER
    Service "capture" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
        Handler(s):
          "DEDICATED" established:4 refused:0 state:ready
             LOCAL SERVER
    Service "captureXDB" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
        Handler(s):
          "D000" established:0 refused:0 current:0 max:1022 state:ready
             DISPATCHER <machine: vtl3199db, pid: 2989>
             (ADDRESS=(PROTOCOL=tcp)(HOST=vtl3199db)(PORT=32773))
    Service "capture_XPT" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
        Handler(s):
          "DEDICATED" established:4 refused:0 state:ready
             LOCAL SERVER
    The command completed successfully
    [oracle@vtl3199db admin]$ lsnrctl stop LIS_PUB
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 19-OCT-2010 05:12:00
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    The command completed successfully
    [oracle@vtl3199db admin]$ lsnrctl services
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 19-OCT-2010 05:12:13
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    TNS-12541: TNS:no listener
    TNS-12560: TNS:protocol adapter error
      TNS-00511: No listener
       Linux Error: 2: No such file or directory
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)(HOST=vtl3199db)(PORT=1521)))
    TNS-12541: TNS:no listener
    TNS-12560: TNS:protocol adapter error
      TNS-00511: No listener
       Linux Error: 111: Connection refused
    [oracle@vtl3199db admin]$ lsnrctl start LIS_PUB
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 19-OCT-2010 05:12:18
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Starting /u01/app/oracle/product/10.2.0/db_1/bin/tnslsnr: please wait...
    TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    System parameter file is /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Log messages written to /u01/app/oracle/product/10.2.0/db_1/network/log/lis_pub.log
    Listening on: (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
    Error listening on: (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)(HOST=122.183.83.130)(PORT=1522)))
    TNS-12545: Connect failed because target host or object does not exist
    TNS-12560: TNS:protocol adapter error
      TNS-00515: Connect failed because target host or object does not exist
       Linux Error: 99: Cannot assign requested address
    Listener failed to start. See the error message(s) above...
    [oracle@vtl3199db admin]$ lsnrctl start
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 19-OCT-2010 05:12:24
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Starting /u01/app/oracle/product/10.2.0/db_1/bin/tnslsnr: please wait...
    TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    System parameter file is /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Log messages written to /u01/app/oracle/product/10.2.0/db_1/network/log/listener.log
    Listening on: (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
    Listening on: (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=vtl3199db)(PORT=1521)))
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    STATUS of the LISTENER
    Alias                     LISTENER
    Version                   TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    Start Date                19-OCT-2010 05:12:24
    Uptime                    0 days 0 hr. 0 min. 0 sec
    Trace Level               off
    Security                  ON: Local OS Authentication
    SNMP                      OFF
    Listener Parameter File   /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Listener Log File         /u01/app/oracle/product/10.2.0/db_1/network/log/listener.log
    Listening Endpoints Summary...
      (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
      (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=vtl3199db)(PORT=1521)))
    Services Summary...
    Service "PLSExtProc" has 1 instance(s).
      Instance "PLSExtProc", status UNKNOWN, has 1 handler(s) for this service...
    The command completed successfully
    [oracle@vtl3199db admin]$ lsnrctl status
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 19-OCT-2010 06:31:57
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    STATUS of the LISTENER
    Alias                     LISTENER
    Version                   TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    Start Date                19-OCT-2010 05:12:24
    Uptime                    0 days 1 hr. 19 min. 32 sec
    Trace Level               off
    Security                  ON: Local OS Authentication
    SNMP                      OFF
    Listener Parameter File   /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Listener Log File         /u01/app/oracle/product/10.2.0/db_1/network/log/listener.log
    Listening Endpoints Summary...
      (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
      (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=vtl3199db)(PORT=1521)))
    Services Summary...
    Service "PLSExtProc" has 1 instance(s).
      Instance "PLSExtProc", status UNKNOWN, has 1 handler(s) for this service...
    Service "capture" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    Service "captureXDB" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    Service "capture_XPT" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    The command completed successfully
    [oracle@vtl3199db admin]$ lsnrctl status LIS_PUB
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 19-OCT-2010 06:32:06
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    STATUS of the LISTENER
    Alias                     LISTENER
    Version                   TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    Start Date                19-OCT-2010 05:12:24
    Uptime                    0 days 1 hr. 19 min. 42 sec
    Trace Level               off
    Security                  ON: Local OS Authentication
    SNMP                      OFF
    Listener Parameter File   /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Listener Log File         /u01/app/oracle/product/10.2.0/db_1/network/log/listener.log
    Listening Endpoints Summary...
      (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
      (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=vtl3199db)(PORT=1521)))
    Services Summary...
    Service "PLSExtProc" has 1 instance(s).
      Instance "PLSExtProc", status UNKNOWN, has 1 handler(s) for this service...
    Service "capture" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    Service "captureXDB" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    Service "capture_XPT" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    The command completed successfully
    [oracle@vtl3199db admin]$ lsnrctl status
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 19-OCT-2010 06:32:27
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    STATUS of the LISTENER
    Alias                     LISTENER
    Version                   TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    Start Date                19-OCT-2010 05:12:24
    Uptime                    0 days 1 hr. 20 min. 3 sec
    Trace Level               off
    Security                  ON: Local OS Authentication
    SNMP                      OFF
    Listener Parameter File   /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Listener Log File         /u01/app/oracle/product/10.2.0/db_1/network/log/listener.log
    Listening Endpoints Summary...
      (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
      (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=vtl3199db)(PORT=1521)))
    Services Summary...
    Service "PLSExtProc" has 1 instance(s).
      Instance "PLSExtProc", status UNKNOWN, has 1 handler(s) for this service...
    Service "capture" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    Service "captureXDB" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    Service "capture_XPT" has 1 instance(s).
      Instance "capture", status READY, has 1 handler(s) for this service...
    The command completed successfullyNOte: Here 122.183.83.130 is public ip for vtl3199 ip where my database is running on the server.
    Kindly help me how to configure the listener with public ip to connect to client .
    Thanks & Regards,
    Poorna Prasad.

    Hi,
    Here when i am trying to start the listener with LISTENER_PRB i am getting error which is shown below.when i am trying to stop the listener with lsnrctl stop LISTENER_PUB the default listener LISTENER is stopping .Here my doubt is it must throw error when we are stopping the listener LISTENER_PUB.
    [oracle@vtl3199db admin]$ lsnrctl start LISTENER_PUB
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 20-OCT-2010 01:33:40
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    TNS-01106: Listener using listener name LISTENER has already been started
    [oracle@vtl3199db admin]$ lsnrctl stop LISTENER_PUB
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 20-OCT-2010 01:36:05
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    The command completed successfully
    [oracle@vtl3199db admin]$ lsnrctl start LISTENER_PUB
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 20-OCT-2010 01:36:31
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Starting /u01/app/oracle/product/10.2.0/db_1/bin/tnslsnr: please wait...
    TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    System parameter file is /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Log messages written to /u01/app/oracle/product/10.2.0/db_1/network/log/listener_pub.log
    Listening on: (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
    Error listening on: (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)(HOST=122.183.83.130)(PORT=1522)))
    TNS-12545: Connect failed because target host or object does not exist
    TNS-12560: TNS:protocol adapter error
      TNS-00515: Connect failed because target host or object does not exist
       Linux Error: 99: Cannot assign requested address
    Listener failed to start. See the error message(s) above...
    [oracle@vtl3199db admin]$ lsnrctl start
    LSNRCTL for Linux: Version 10.2.0.1.0 - Production on 20-OCT-2010 01:36:37
    Copyright (c) 1991, 2005, Oracle.  All rights reserved.
    Starting /u01/app/oracle/product/10.2.0/db_1/bin/tnslsnr: please wait...
    TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    System parameter file is /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Log messages written to /u01/app/oracle/product/10.2.0/db_1/network/log/listener.log
    Listening on: (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
    Listening on: (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=vtl3199db)(PORT=1521)))
    Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=IPC)(KEY=EXTPROC1)))
    STATUS of the LISTENER
    Alias                     LISTENER
    Version                   TNSLSNR for Linux: Version 10.2.0.1.0 - Production
    Start Date                20-OCT-2010 01:36:37
    Uptime                    0 days 0 hr. 0 min. 0 sec
    Trace Level               off
    Security                  ON: Local OS Authentication
    SNMP                      OFF
    Listener Parameter File   /u01/app/oracle/product/10.2.0/db_1/network/admin/listener.ora
    Listener Log File         /u01/app/oracle/product/10.2.0/db_1/network/log/listener.log
    Listening Endpoints Summary...
      (DESCRIPTION=(ADDRESS=(PROTOCOL=ipc)(KEY=EXTPROC1)))
      (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=vtl3199db)(PORT=1521)))
    Services Summary...
    Service "PLSExtProc" has 1 instance(s).
      Instance "PLSExtProc", status UNKNOWN, has 1 handler(s) for this service...
    The command completed successfullyRegards,
    Poorna Prasad.

  • Can not connect to Cerberus FTP Server with PASV

    I setup a FTP Server and i can connect from the inside fine but from the outside i can not connect in passive mode. I can in regular ftp or ssh.
    Here is the log from filezilla
    Status:          Resolving address of domain.com
    Status:          Connecting to ExternalIP:990...
    Status:          Connection established, initializing TLS...
    Status:          Verifying certificate...
    Status:          TLS/SSL connection established, waiting for welcome message...
    Response:          220-220-Welcome to Cerberus FTP Server
    Response:          220 220 Created by Cerberus, LLC
    Command:          USER test
    Response:          331 User test, password please
    Command:          PASS ***********
    Response:          230 Password Ok, User logged in
    Command:          CLNT FileZilla
    Response:          200 Command okay
    Command:          OPTS UTF8 ON
    Response:          220 UTF8 support on
    Command:          PBSZ 0
    Response:          200 PBSZ=0
    Command:          PROT P
    Response:          200 PROT P OK, data channel will be secured
    Status:          Connected
    Status:          Retrieving directory listing...
    Command:          PWD
    Response:          257 "/" is the current directory
    Command:          TYPE I
    Response:          200 Type Binary
    Command:          PASV
    Response:          227 Entering Passive Mode (external IP,195,83)
    Command:          MLSD
    Error:          Connection timed out
    Error:          Failed to retrieve directory listing
    Result of the command: "show running-config"
    : Saved
    ASA Version 8.0(4)
    interface Vlan1
    nameif inside
    security-level 100
    ip address 192.168.10.10 255.255.255.0
    interface Vlan2
    nameif outside
    security-level 0
    pppoe client vpdn group att
    ip address pppoe setroute
    interface Ethernet0/0
    switchport access vlan 2
    interface Ethernet0/1
    interface Ethernet0/2
    interface Ethernet0/3
    interface Ethernet0/4
    interface Ethernet0/5
    interface Ethernet0/6
    interface Ethernet0/7
    ftp mode passive
    clock timezone CST -6
    clock summer-time CDT recurring
    object-group service RDP tcp
    description RDP
    port-object eq 3389
    object-group service FTP_PASV_Ports tcp
    description Passive Ports
    port-object range 35000 35999
    object-group service FTPS tcp
    description FTPS
    port-object eq 990
    access-list outside_access_in extended permit tcp any any object-group RDP
    access-list outside_access_in extended permit icmp any any
    access-list outside_access_in extended permit tcp any any eq ftp
    access-list outside_access_in extended permit tcp any any eq telnet
    access-list outside_access_in extended permit tcp any any eq smtp
    access-list outside_access_in extended permit tcp any any eq www
    access-list outside_access_in extended permit tcp any any eq pop3
    access-list outside_access_in extended permit tcp any any eq https
    access-list outside_access_in remark passive FTP port range
    access-list outside_access_in extended permit tcp any host server object-group FTP_PASV_Ports
    access-list outside_access_in extended permit tcp any any eq ssh
    access-list outside_access_in extended permit tcp any any object-group FTPS
    access-list outside_access_in extended permit tcp any any eq ftp-data
    pager lines 24
    logging enable
    logging asdm informational
    mtu inside 1500
    mtu outside 1492
    icmp unreachable rate-limit 1 burst-size 1
    asdm image disk0:/asdm-621.bin
    no asdm history enable
    arp timeout 14400
    global (outside) 1 interface
    nat (inside) 1 0.0.0.0 0.0.0.0
    static (inside,outside) tcp interface www server www netmask 255.255.255.255
    static (inside,outside) tcp interface https server https netmask 255.255.255.255
    static (inside,outside) tcp interface smtp server smtp netmask 255.255.255.255
    static (inside,outside) tcp interface 3389 server 3389 netmask 255.255.255.255
    static (inside,outside) tcp interface pop3 server pop3 netmask 255.255.255.255
    static (inside,outside) tcp interface ftp server ftp netmask 255.255.255.255
    static (inside,outside) tcp interface ssh server ssh netmask 255.255.255.255
    static (inside,outside) tcp interface 990 server 990 netmask 255.255.255.255
    static (inside,outside) tcp interface ftp-data server ftp-data netmask 255.255.255.255
    access-group outside_access_in in interface outside
    timeout xlate 3:00:00
    timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
    timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
    timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
    timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
    dynamic-access-policy-record DfltAccessPolicy
    http server enable
    http 192.168.10.0 255.255.255.0 inside
    no snmp-server location
    no snmp-server contact
    snmp-server enable traps snmp authentication linkup linkdown coldstart
    crypto ipsec security-association lifetime seconds 28800
    crypto ipsec security-association lifetime kilobytes 4608000
    telnet 0.0.0.0 0.0.0.0 inside
    telnet timeout 5
    ssh 192.168.10.0 255.255.255.0 inside
    ssh timeout 5
    console timeout 0
    vpdn group att request dialout pppoe
    vpdn group att localname @static.sbcglobal.net
    vpdn group att ppp authentication pap
    vpdn username @static.sbcglobal.net password *********
    dhcpd auto_config outside
    threat-detection basic-threat
    threat-detection statistics access-list
    no threat-detection statistics tcp-intercept
    username admin password rcuFiQnIXLd encrypted privilege 15
    class-map inspection_default
    match default-inspection-traffic
    policy-map type inspect dns preset_dns_map
    parameters
      message-length maximum 512
    policy-map global_policy
    class inspection_default
      inspect dns preset_dns_map
      inspect h323 h225
      inspect h323 ras
      inspect rsh
      inspect rtsp
      inspect esmtp
      inspect sqlnet
      inspect skinny 
      inspect sunrpc
      inspect xdmcp
      inspect sip 
      inspect netbios
      inspect tftp
      inspect ftp
    service-policy global_policy global
    prompt hostname context
    Cryptochecksum:ecb5356a2f5e680b
    : end
    I am programing the router with ASDM so if you could tell me what i need to do from the GUI to fix this.

    Dan,
    Looking at the output,
    Status:          Resolving address of domain.com
    Status:          Connecting to ExternalIP:990...
    Status:          Connection established, initializing TLS...
    Status:          Verifying certificate...
    Status:          TLS/SSL connection established, waiting for welcome message...
    This looks like FTPS which is not supported on the ASA. You can workaround it by trying to connect using Active mode from the outside instead of PSV.
    You can find more info here:
    https://supportforums.cisco.com/docs/DOC-23206
    Mike

Maybe you are looking for