Pix501: allow all incoming smtp to one host and all smtp out from one host only
I have a pix501 and I have a mail server. What I would like to do is ensure that smtp traffic from the web only goes to my mail server and that my mail server is the only machine on my local network that can send to the internet on port 25. This is to secure the possibility of bots on my childrens PCs spamming other users. The mail server has been relay secured for selected PCs only.
To the pix501; I think the following is what I need, but would like somebody to confirm or correct me:
interface ethernet0 auto
interface ethernet1 100full
nameif ethernet0 outside security0
nameif ethernet1 inside security100
access-list inbound permit tcp any host x.x.x.x eq smtp
access-list outbound permit tcp host x.x.x.x ant eq smtp
access-group inbound in interface outside
access-group outbound in interface inside
Most important:
1. Have I got the access-lists right? Does pix501 support host x.x.x.x (ip of local webserver 192.168.x.x)
2. Are the access lists the right way around?
3. Is the access-group setup right?
4. Is there anything else that needs doing/
Any help appreciated.
Note: I am a Cisco newbie and trying to learn,
Thanks for that information.
I thought about this some more, after seeing your response, and I was wondering; if I only want to restrict smtp outbound traffic, but allow all other traffic, would the following work, as I dont have to allow each specific port/ip address:
access-list outbound permit tcp host 192.168.1.3 any eq smtp
access-list outbound permit tcp host 192.168.1.36 any eq smtp
access-list outbound deny tcp any any eq smtp
access-list outbound permit udp any any
access-list outbound permit tcp any any
I realise that this would open all sorts of other security risks, but at least trojans/worms will not be able to spam from PCs other than those listed as per the first 2 lines ( which is my major concern at the moment). As I learn more about the traffic on my network I can block more undesirable ports.
Sorry to be a pain, but this could be useful to other and the more complete the setup, the easier it will be for them.
Similar Messages
-
I am running OS10.6.8 and have a mail box duplication. I use gmail and when I open my mail I have both the Apple Mail and another set of boxes for Gmail. Both get all mail and when I delete from one, it deletes from the other. How can I get rid of the dup
Hi,
According to your descriptioin, I don't think this is system problem, it should be Intel driver problem. It would be contact Intel to confirm this issue whether this is their driver problem.
Roger Lu
TechNet Community Support -
I have a HP Photosmart C7280 All-in-One Printer and want to print from my ipad
I have a HP Photosmart C7280 All-in-One Printer and want to print from my ipad's and my iphones at home... My printer is set up to print wirlessly on my Network. I need to know is there a firm wear update i can get or a good app to install so i can print??
hi there,
This article should have everything you need to get started . Check it out and let us know if it helps.
Best of Luck!
You can say thanks by clicking the Kudos Star in my post. If my post resolves your problem, please mark it as Accepted Solution so others can benefit too. -
How to change/update one page and all others at once?
I'm quite new to Dreamweaver. I am trying to add some things to my sidebar and I would like it to appear on all of my other pages. I used a template for the index(homepage) then I just saved the page so I could create other pages for it to have the same logo and such on those pages. So how do I go about editing one page and all others at once?
If you used DW Templates to create your child pages, open your .dwt file.
Make changes to the sidebar.
Save and populate changes to child pages.
Unfortunately, making changes to child pages will not populate to other child pages. Only the master template.dwt in DW can populate changes across to child pages.
Nancy O. -
My "pages" app in my iPad doesn't support my language (Hebrew) it not allow me to mark a whole sentence and all kind of stuff (; please help
Try enabling the Hebrew keyboard from Settings > General > Keyboard > International Keyboards.
If it's still not working the way you want, just leave feedback here -> Apple - Pages for iOS - Feedback -
Whenever i start my ipad2 the applications automatically starts to open and close automatically jumps from one screen to another cannot operate the ipad at all, tried switching off and back on again, also restored the ipad but of no use
try restart
http://support.apple.com/kb/HT1430 -
I have an extensive aperture library on my computer's hard drive and I want to break it up into separate smaller libraries on external hard drives. How do I take projects from one library and add them to another one?
Coastal,
Frank gave you the exact answer to your question.
However, I would like to ask if you are indeed asking the right question. Do you really want different libraries? The implications are that you have to "switch" libraries to see what's in the others, and so that your searches don't work across all of your pictures? If so, then you asked the right question. If not, you may be more interested in relocating your masters to multiple hard drives so your library gets smaller, instead of breaking up the library.
nathan -
HHola I update my Apple TV and I am frozen screen with the photo of Apple TV and iTunes symbol and a cable connected from one to another device, it happens and how to fix it Apple TV
Welcome to the Apple Community.
If your problem persists get yourself a micro USB cable (sold separately), you can restore your Apple TV from iTunes:
Remove ALL cables from Apple TV. (if you don't you will not see Apple TV in the iTunes Source list)
Connect the micro USB cable to the Apple TV and to your computer.
Reconnect the power cable (only for Apple TV 3)
Open iTunes.
Select your Apple TV in the Devices list, and then click Restore.
(You may already have a micro USB cable if you have a camera or other digital device) -
Migrate PY and TM cluster data from One SAP System to another
Hi Experts,
Could you please suggest me some options to migrate PY and TM cluster data from One SAP System to another? My requirement is to move all the cluster data (Active and Inactive ees).
I see that PU12 is an option. Anybody used that to migrate between SAP systems. Please provide some details
Points guaranteed
I see that using PU12 you can export only PCL2 Clutsers. Are there any ways to move the other clusters like PCL4 ?Hi,
As far as data transfer, If have all normal configuration settings in your targeted system you can use LSMW (Use T.code AS91 in LSMW for recording) to transfer your data in your both cases.
Hope it resolves your both the issues.
Regards,
Murali -
Will iCloud backup and push specific files from one MAC to another?
will iCloud backup and push specific files from one MAC to another?
This is what I get when I follow that Link, Winston.
I am using Safari and I am sighned in with my Apple Id. I'm not sure what the trouble is but I can not seem to read that tip is there some other way for me to find it?
Unauthorized
It appears you're not allowed to view what you requested. You might contact your administrator if you think this is a mistake. -
I have not used sync yet, but I have the gut feeling there is going to be a problem if I do. I have different bookmarks that I want to keep on each computer. Will sync delete the bookmarks on one computer and overwrite the bookmarks from the other computer in their place? So I'm guessing it will erase the bookmarks on the second computer that you set up to sync. Is there a way to merge the bookmarks from each computer into one bookmark library that contains all the bookmarks from both computers, so that I don't lose any bookmarks by syncing?
Hi,
Firefox Sync works by merging all the info in all your computers. It doesn't replace anything. So if you have information A in one device and information B in other device, after setting up Sync you will have information A+B in both devices.
I hope this clarifies the situation. -
My iPad does not find the printer. I have tried the HP app and it works, but in any other app the printer is not seen. How do I get this printer visible to the iPad. All my other network computers find and print with out a problem.
hi
could you tell us what the other app is please -
HI
I have 2 IPads, I am unable to use one of it because I have forgotten my pass code and also logged out from iCloud accidentially. Can you please help me to solve this problem.
Cheers
RaveenaFollow the instructions on this page : Forgot passcode for your iPhone, iPad, or iPod touch, or your device is disabled - Apple Support
-
Is there a way that you can copy and paste blade effects from one clip to the other so that the cuts are an exact duplicate of each other?
The same cuts that I have in this clip that i performed with the blade tool, I want to duplicate, copye, paste and apply to another clip. I want the cuts to mimic and be an exact same. I wish i could highlight the clip, click copy and then highlight the other clip and then click paste and the cuts apply.
-
How can I order an iphone 6 and pick it up from one of the apple stores in London??? It doesn't work with reserve and pick up because the 64 gb is never in stock.
Thank you for replying. Yes I deleted the old email address..
-
I'm really sorry i just bay my griAddress again to my phone please grindar extra just for one month and you charge me for one year so i would like to cancel that transaction and pay only monthly many thanks marcel
These are user forums. You are not speaking to Apple. We can't assist you. You must contact Apple directly in your country.
Customer Service: Contacting Apple for support and service - this includes international calling numbers.
Maybe you are looking for
-
DBD: parse error unexpected " found.
Hi, Login to Universe Designer by SAP account, and during editing a connection, we tried to select the auth mode as "Use Single Sign-On when view and ...." , then next, got the following error message in a popup dialog: DBD: parse error unexpected
-
I have a .band file on my desktop and i can't get rid of it
I can't delete it, move it or get info on it. What do I do?
-
C++ Program crashes at OCIDateFromText (8.1.7)
Environment: DB Server: Oracle 8.1.6 DB Client: Oracle 8.1.7 on Sun Solaris 8 Compiler: g++ Mode: Multi-Threading (pthread) Architecture of the program: 10 threads for DB Access. I create 1 DB Environment for per thread with mode OCI_THREADED|OCI_OBJ
-
OBIEE 11G OEL5.5 app deployments like analytics, bipublisher not starting.
Ok, I successfully installed OBIEE 11.1.1.3.0 on OEL 5.5 without any errors. I was also able to log on to 1) http://myhostname:7001/console 2) http://myhostname:7001/em 3) http://myhostname:9704/analytics I did not notice any errors, everything was r
-
Sales Rep. Modelling for Query.
As you might know, in SD one can have 4 Sales Rep for the same document (i.e. Sales Order). All of them goes to different fields in the extractors and from there, up to the DSO/Cubes. How can I model them if I have to write a query of Sales by Sales