Cannot access Bitvise server on port 22 from 871W

I am pretty new to Cisco gear and a newbie at ACLs but here goes...
here is the ouput from  #sh ip access-lists
Standard IP access list 1
    10 permit 192.168.1.0, wildcard bits 0.0.0.255 (1993 matches)
Extended IP access list FILTERNET
    10 permit tcp 111.222.333.0 0.0.0.255 host 192.168.1.42 eq 22
    20 permit tcp 192.168.1.0 0.0.0.255 any eq www
    30 permit tcp any host 222.333.444.555 eq www (135 matches)
    40 permit tcp 111.222.333.0 0.0.0.255 any eq telnet (2964 matches)
    50 permit tcp 222.333.444.555 0.0.0.7 any eq telnet (5328 matches)
    60 permit tcp any any established (125628 matches)
    70 permit udp any any (2833 matches)
    80 deny ip any any (258 matches)
access list 1 is of course for nat... and all of the clients can access the WAN just fine
FILTERNET is intended to, among other things, forward port 22 traffic from 111.222.333.0 0.0.0.255 to 192.168.1.42 where Bitvise is running and listening on port 22. This is a applied to FastEthernet4 as: ip access-group FILTERNET in
I have 8 static public IP addresses and this works fine with my Linksys WRT54G when he's running the show, so I know that the setup in Bitvise is solid...
I can telnet in from 111.222.333.xxx and 222.333.444.xxx just fine but I cannot connect to Bitvise; what puzzles me is the show ip access-lists does not show any packets allowed in on port 22 and the 80 deny any any is counting up each time I try to log in so I can only assume it is denying port 22. However, from Line 40 I see that same outside address is successful in bringing telnet traffic in.
I have ssh on the vty lines shut off right now on the 871W, by the way. Also, I can choose a different port for Bitvise to listen on and can log in from that port if that would cure it, I didn't think about that until just now... does the router block port 22 no matter how the ACL is set if ssh is shut off on the vty lines?
Thanks in advance,
-Gary

OK, I got it sorted out, it wasn't as much a problem with NAT as it was with my ACL...
ip nat inside source list 1 interface FastEthernet4 overload
ip nat inside source static tcp 192.168.1.42 22 interface FastEthernet4 22   <-- using ONLY port 22 of the outside address
ip access-list extended FILTERNET
permit tcp any any eq 22                                           <-- opened this up; letting the static nat handle this port
permit tcp xxx.xxx.xxx.xxx 0.0.0.255 any eq telnet      <-- an external subnet that I trust
permit tcp xxx.xxx.xxx.xxx 0.0.0.7 any eq telnet         <-- another trusted subnet
permit tcp any any established                                   <-- only connections that I initiate are allowed
permit icmp any any                                                  <-- for now, allowing pings
permit udp any any                                                    <- some things just would not work w/o this
deny   ip any any                                                      <-- implied, I know, but this way I can see the count
access-list 1 permit 192.168.1.0 0.0.0.255
works like a champ now! Thanks for the help!! 

Similar Messages

  • I updated iphone 4s to 7.02 and now cannot access icloud server.

    I updated iphone 4s to 7.02 and now cannot access icloud server.

    One of these:
    Restart:
    1. Press and hold the Sleep/Wake button until the red "slide to power off" slider appears, and then slide the slider.
    2. Press and hold the Sleep/Wake button until the Apple logo appears.
    Reset: Hold down the Sleep/Wake button and the Home button at the same time for at least ten seconds, until the Apple logo appears. Note: You will not lose any data
    Restore from backup
    Restore as new
    http://support.apple.com/kb/HT1414

  • How do i solve - cannot access web server - error message when creating a project in 4.5 with PHP

    How do i solve - cannot access web server - error message when creating a project in 4.5 with PHP

    Screenshot of how it looks when i try to show a ms access form inside a iframe:
    http://oi58.tinypic.com/2vj4ish.jpg

  • I'm trying to connect to my work's VPN.  I am connected to the VPN, but I cannot access the server. I keep getting a message that says the server may not exist or is unavailable.  I know that's not the case because my coworkers are connected. Can someone

    I'm trying to connect to my work's VPN.  I am connected to the VPN, but I cannot access the server. I keep getting a message that says the server may not exist or is unavailable.  I know that’s not the case because my coworkers are connected. Can someone please help me? 

    I have the same problem. It is only with tv shows and only with programs I have downloaded after the software update.
    Apple support sent me the above link too....but it doesn't solve the problem...my computer is authorized and the content is in my library and will play on my Mac air, but it will not sync the tv shows, it keeps saying my computer isn't authorized for it.
    No answers here, but you are definitely not alone with this issue.

  • I purchased an HD movie on Apple TV but it says that I cannot access the server at this time.  I try daily but this problem doesn't seem to go away.  Any suggestions?

    I purchased a movie via Apple TV/iTunes but it says that I cannot access the server at this time.  In summary, I can't download the movie.  This problem has persisted for 4-5 days now.  Any suggestions?  BTW, I upgraded to Yosemite on my iMac last weekend.  Thanks!

    You need more RAM.
    http://www.thexlab.com/faqs/lackofram.html
    Mostly iTunes, mail, finder, google chrome, and one or two other programs.
    What are the "two other programs?" The ones you named shouldn't be consuming all your RAM, even if open concurrently. But I've heard (I don't use it) 10.7 is a memory hog.
    Closing open apps may not solve the problem, since that memory is still being held in reserve for them.
    This problem is usually caused by a combination of low RAM and low disk space.I am very puzzled when you say you have 895GB left on the drive. That should be an enormous amount of room for the memory to page out (write) to.
    Message was edited by: WZZZ

  • I cannot access my mobileme's account from my Ipad 2

    I cannot access my mobileme's account from my Ipad 2 because it assumes I do not have an account and need to create a new one (I can access my mobileme's account from my MacBook Pro). What can I do?

    What are you trying to look up on your mobile me account?  You should be syncing mobile me e mails, contacts, ect.  You have to set them up.

  • BIB-7000 Cannot access X Server : For only Graphical Dashboard

    Version : 11.5.10.2
    There is abnormal behavior only for graphical dashboard. However, PDF reports are running fine completion with no error.
    pls advice what is the caused of this issue.

    oracle0282 wrote:
    Version : 11.5.10.2
    There is abnormal behavior only for graphical dashboard. However, PDF reports are running fine completion with no error.
    pls advice what is the caused of this issue.What is the navigation path?
    Please also see these docs.
    11.5.9/11.5.10: Account Manager Dashboard Error: "You Have Encountered An Unexpected Error" with Exception Error: "Java.Lang.RuntimeException: BIB-7000 Cannot Access X Server" [ID 390519.1]
    'BIB-7000 Cannot access X Server' Error Clicking on Details Button in Compensation Workbench Approvals Task [ID 558420.1]
    Opening Reporting Page (Tab) Results In Java Exception Error: BIB-7000 Cannot Access X Server [ID 337899.1]
    BIB-7000 Server Error On Navigating To Oracle Marketing Audience Workbench [ID 433209.1]
    How to Test X-Server in JSP Module [ID 461497.1]
    Clicking Configure icon in DBI gives You have encountered an unexpected error. Please contact the System Administrator for assistance [ID 303422.1]
    Troubleshooting FNDREPRINT Framework in 11.5.10 [ID 330351.1]
    ATTEMPING TO VIEW GRAPHICS OR TRYING TO CONFIGURE THE JAVA MAILER HANGS [ID 351839.1]
    Thanks,
    Hussein

  • My application needs to access web server. So, from that application how do i call firefox ? and how do i pass an argument such as url/web server ip address?

    My application needs to a access web server. So, from that application how do i call Firefox ? And how do i pass an argument such as the url/web server ip address?
    == This happened ==
    Not sure how often

    Try posting at the Web Development / Standards Evangelism forum at MozillaZine. The helpers over there are more knowledgeable about web page development issues with Firefox.
    [http://forums.mozillazine.org/viewforum.php?f=25]
    You'll need to register and login to be able to post in that forum.

  • HT1391 I have a new computer and cannot access my previously purchased music from here. The error message says I need to authorize this computer

    I have a new computer and cannot access my previously purchased music from here. The error message says I need to authorize this computer??

    There's a couple of ways to get through to the authorisation controls in the 11.0.x versions.
    The control is still in the Store menu, but first (if you're using iTunes versions 11.0.x) you might need to bring up the menu bar to see the Store menu.
    If you're using 11.0.x, click on the wee boxy icon up in the top-left corner of your iTunes to see the "Show Menu Bar" control, as per the following screenshot:
    Then you'll find the control in the Store menu:
    Alternatively, if you don't want to bring up the menu bar, it's still possible to get into the authorise controls via nested menus accessible from the wee boxy icon. Here's a screenshot of where to find them:

  • SRKIM: Bis dashboard 에서 BIB-7000 Cannot Access X Server Error

    PURPOSE
    Bis dashboard page 에서 발생하는 BIB-7000 Cannot Access X Server error 를 해결한다.
    Problem Description
    Graph를 보여 주는 BIS dashboard page 에 접근 시 아래와 같은 error 가 발생한다.
    Error
    You have encountered an unexpected error. Please contact the System Administrator for assistance.
    Click here for exception details.
    On clicking the link, exception stack would be displayed where
    “java.lang.RuntimeException: BIB-7000 Cannot access X Server" is displayed
    Workaround
    N/A
    Solution Description
    1.     Applications 와 Database tier 의 context file 에서 "s_display" 변수가 제대로 설정 되었는지 확인 한다.
    Nav : Application (OAM) > AutoConfig > Edit Parameters
    "s_display" 변수는 반드시 아래와 같은 형식으로 설정 되어 있어야 하며 해당 Display Server 가 반드시 running 상태 여야 한다.
    "DISPLAY <hostname or ip address>:0.0"
    2. 'root' user 로 Display Server에 접속 하여 DISPLAY 환경 변수를 아래와 같이 설정한다.
    For csh:
    % setenv DISPLAY <hostname or ip address>:0.0
    example: setenv DISPLAY 192.168.1.128:0.0
    For sh, ksh and bash:
    $ DISPLAY=<hostname or ip address>:0.0; export DISPLAY
    example: DISPLAY=192.168.1.128:0.0; export DISPLAY
    3. adstpall.sh script 을 이용하여 application services 를 다시 시작한다.
    Reference Documents
    Note. 390519.1 Java.Lang.Runtimeexception: BIB-7000 Cannot Access X Server

    oracle0282 wrote:
    Version : 11.5.10.2
    There is abnormal behavior only for graphical dashboard. However, PDF reports are running fine completion with no error.
    pls advice what is the caused of this issue.What is the navigation path?
    Please also see these docs.
    11.5.9/11.5.10: Account Manager Dashboard Error: "You Have Encountered An Unexpected Error" with Exception Error: "Java.Lang.RuntimeException: BIB-7000 Cannot Access X Server" [ID 390519.1]
    'BIB-7000 Cannot access X Server' Error Clicking on Details Button in Compensation Workbench Approvals Task [ID 558420.1]
    Opening Reporting Page (Tab) Results In Java Exception Error: BIB-7000 Cannot Access X Server [ID 337899.1]
    BIB-7000 Server Error On Navigating To Oracle Marketing Audience Workbench [ID 433209.1]
    How to Test X-Server in JSP Module [ID 461497.1]
    Clicking Configure icon in DBI gives You have encountered an unexpected error. Please contact the System Administrator for assistance [ID 303422.1]
    Troubleshooting FNDREPRINT Framework in 11.5.10 [ID 330351.1]
    ATTEMPING TO VIEW GRAPHICS OR TRYING TO CONFIGURE THE JAVA MAILER HANGS [ID 351839.1]
    Thanks,
    Hussein

  • Cannot access web server internally with ea6200

    I have the same problem as found in these posts:
    http://community.linksys.com/t5/Wireless-Routers/Cannot-access-server-internally/m-p/743969/highligh...
    http://community.linksys.com/t5/Wired-Routers/Accessing-Internal-Web-Servers-External-OK-Internal-No...
    http://community.linksys.com/t5/Wireless-Routers/EA6500-NAT-Redirection-Bug/td-p/583820/highlight/fa...
    Basically, I can't access my local http http server.  Like the other posters, this is a new router and I've never had this problem before.  I know very little about networking, but I am a developer and need my server to be accessible on my LAN.
    The only things I’ve done since setting up the router are:
    Setup the wifi security
    Enable the media prioritization as a user suggested in the last link I posted.
    Forward ports 80 and 8080 – I did this knowing that it made no sense because I only care about local access, but since nothing else with this stupid router makes any sense, I figured, “what the hell!”
    I really appreciate any help I can get.  I’m thinking about just ordering a new router and sending this PoS back to newegg.

    Hi jerred121, I've done a bit of a research about this feature. There is what we call DNS Rebinding Attacks, certain actions will not work from behind the router, this is for your own protection. I know it worked before with older routers.
    If you need to access your server locally, you can use the private IP of that device rather than the public IP.

  • Cannot uninstall VMware Server 1.0. from Windows 7

    [pictures attached]
    I tried to install VMware Server 1.0.10, but got this message:
    Windows requires a digitally signed driver
    A recently installed program tried to install an unsigned driver.
    This version of Windows requires all drivers to have a valid digital signature.
    The driver is unavailable and the program that uses this driver might not work correctly.
    Uninstall the program or device that uses this driver and check the
    publisher's support website to get a digitally signed driver.
    Driver: VMware bridge driver (64-bit)
    Service: VMware Bridge Protocol
    PROBLEM: cannot uninstall VMware Server
    QUESTION: how can I manually uninstall VMware Server from my Windows 7?
    Thanks in advance.

    If you're being flooded with this (literally every second) in /var/log/messages I would recommend applying patch 5679560 (if you have access to metalink):
    Oct 16 11:05:06 vmerin su(pam_unix)[8725]: session closed for user oracle
    Oct 16 11:05:06 vmerin su(pam_unix)[8768]: session opened for user oracle by (uid=0)
    This will reduce the load significantly.

  • Non-admin user cannot access Essbase server level variables

    Version 11.1.1.3
    Essbase Substitution variables are created at server level. Users are getting error in FR report that uses the Subsitution Variable -- Essbase Error(1051085): You do not have sufficient access to get this substitution variable. Also, users cannot access Substitution variable in SmartView. However, users can access variables created at database level. Users are provisioned as "Server Access" to Essbase and filter access to ASO application "MGTRPTG", where MGTRPTG is an ASO essbase application for reporting. We tried the same provisioning in two other environments and it seems to be working fine.
    User is type "Essbase and Planning" provisioned with essbase "server access", application mgtrptg "filter", Reporting and Analysis "analyst", "dynamic viewer" and "Explorer". In addition, it is given a filter "REP_DME_GALB" which restricts 2 dimensions (Division and Geography).
    Steps taken to resolve:
    1. Existing users were deprovisioned and reprovisioned with no effect.
    2. Created brand new identically provisioned users in Prod and QA. QA user can access the server level var and Prod user cannot
    3. Created a brand new server level variable in Prod and this cannot be accessed.
    4. All services have already been restarted several times.
    5. SR has been opened.
    Temporary workaround:
    By creating a duplicate of the same set of variables at the database level, the reports work. This can only be a temporary workaround as the client cannot be expected to maintain two sets of substitution variables since there are 3 applications using these server level variables.
    Thank you for any ideas!
    Jennifer

    You have stumbled on a defect which is resolved in the Hyperion Planning 9.3.1 patch 6 and above. If you have your planning preferences set to indent members it will cause forms which have page selections to show as invalid in SmartView.
    You can either patch Planning or turn off the preference. The patches are available from http://metalink3.oracle.com and require account which has been associated with your client ID.
    P.S. Usually it's not a good practice to use the admin id.
    Regards,
    -John
    Edited by: Jbooth on Nov 3, 2008 2:12 PM

  • Lync 2010 client - Cannot access lync server as a remote user

    Just one simple question. I cannot login to my lync 2010 server because from my location I cannot reach directly from my client  the edge server on port 443. Can I still login to lync if using an internet proxy, I know that using an internet proxy,
    with another ip I can reach the internet and so I can reach also the edge server public address on port 443. But I don't know if lync client for login read also internet proxy settings.
    Hope it's all clear. Thanks for your support

    As long as you are able to reach Internet and your edge is configured properly, you will be able to connect. Lync client doesnt have proxy settings

  • Server name, port from OSB proxy and BPEL processes

    How do I read the server name, port and any other server related information from OSB proxy and BPEL processes?

    http://www.experts-exchange.com/Software/Server_Software/Application_Servers/Java/BEA_WebLogic/Q_24480613.html
    ObjectName service = new ObjectName("com.bea:Name=RuntimeService,Type=weblogic.management.mbeanservers.runtime.RuntimeServiceMBean");
    InitialContext ctx = new InitialContext();
    MBeanServer server = (MBeanServer)ctx.lookup("java:comp/env/jmx/runtime");
    ObjectName rt = (ObjectName)server.getAttribute(service,"ServerRuntime");
    System.out.println("Server Name : "+server.getAttribute(rt,"Name"));
    System.out.println("Server Address : "+server.getAttribute(rt,"ListenAddress"));
    System.out.println("Server Port : "+server.getAttribute(rt,"ListenPort"));
    ctx.close();
    By the way, it tool 10 seconds on google ...

Maybe you are looking for