I am using a pix 515 for nat. I also have all internal hosts use the proxy server as the only access to the internet. I have an application that needs to upload a database file to the application vendor's site using ports 1100, 1101, and 1102. I want to be able to allow these ports to pass through the proxy and the pix to the our external address. Here are my statements. They do not work. What is wrong??
conduit permit udp host 209.158.xx.x eq 1100 host 10.8.63.200
conduit permit tcp host 209.158.xx.x eq 1100 host 10.8.63.200
conduit permit udp host 209.158.xx.x eq 1101 host 10.8.63.200
conduit permit tcp host 209.158.xx.x eq 1101 host 10.8.63.200
conduit permit udp host 209.158.xx.x eq 1102 host 10.8.63.200
conduit permit tcp host 209.158.xx.x eq 1102 host 10.8.63.200
conduit permit udp host 209.158.xx.x eq 1100 host 10.7.65.71
conduit permit tcp host 209.158.xx.x eq 1100 host 10.7.65.71
conduit permit udp host 209.158.xx.x eq 1101 host 10.7.65.71
conduit permit tcp host 209.158.xx.x eq 1101 host 10.7.65.71
conduit permit udp host 209.158.xx.x eq 1102 host 10.7.65.71
conduit permit tcp host 209.158.xx.x eq 1102 host 10.7.65.71
conduit permit udp host 209.158.xx.x eq 1100 host 10.6.61.112
conduit permit tcp host 209.158.xx.x eq 1100 host 10.6.61.112
conduit permit udp host 209.158.xx.x eq 1101 host 10.6.61.112
conduit permit tcp host 209.158.xx.x eq 1101 host 10.6.61.112
conduit permit udp host 209.158.xx.x eq 1102 host 10.6.61.112
conduit permit tcp host 209.158.xx.x eq 1102 host 10.6.61.112
conduit permit udp host 209.158.xx.x eq 1100 host 10.7.65.125
conduit permit tcp host 209.158.xx.x eq 1100 host 10.7.65.125
conduit permit udp host 209.158.xx.x eq 1101 host 10.7.65.125
conduit permit tcp host 209.158.xx.x eq 1101 host 10.7.65.125
conduit permit udp host 209.158.xx.x eq 1102 host 10.7.65.125
conduit permit tcp host 209.158.xx.x eq 1102 host 10.7.65.125
Is this the command I should be using, or should I use an outbound command? Any help would be appreciated. Thanks.
conduit permit udp host 209.158.xx.x eq 1100 host 10.8.63.200
conduit permit tcp host 209.158.xx.x eq 1100 host 10.8.63.200
conduit permit udp host 209.158.xx.x eq 1101 host 10.8.63.200
conduit permit tcp host 209.158.xx.x eq 1101 host 10.8.63.200
conduit permit udp host 209.158.xx.x eq 1102 host 10.8.63.200
conduit permit tcp host 209.158.xx.x eq 1102 host 10.8.63.200
conduit permit udp host 209.158.xx.x eq 1100 host 10.7.65.71
conduit permit tcp host 209.158.xx.x eq 1100 host 10.7.65.71
conduit permit udp host 209.158.xx.x eq 1101 host 10.7.65.71
conduit permit tcp host 209.158.xx.x eq 1101 host 10.7.65.71
conduit permit udp host 209.158.xx.x eq 1102 host 10.7.65.71
conduit permit tcp host 209.158.xx.x eq 1102 host 10.7.65.71
conduit permit udp host 209.158.xx.x eq 1100 host 10.6.61.112
conduit permit tcp host 209.158.xx.x eq 1100 host 10.6.61.112
conduit permit udp host 209.158.xx.x eq 1101 host 10.6.61.112
conduit permit tcp host 209.158.xx.x eq 1101 host 10.6.61.112
conduit permit udp host 209.158.xx.x eq 1102 host 10.6.61.112
conduit permit tcp host 209.158.xx.x eq 1102 host 10.6.61.112
conduit permit udp host 209.158.xx.x eq 1100 host 10.7.65.125
conduit permit tcp host 209.158.xx.x eq 1100 host 10.7.65.125
conduit permit udp host 209.158.xx.x eq 1101 host 10.7.65.125
conduit permit tcp host 209.158.xx.x eq 1101 host 10.7.65.125
conduit permit udp host 209.158.xx.x eq 1102 host 10.7.65.125
conduit permit tcp host 209.158.xx.x eq 1102 host 10.7.65.125
Is this the command I should be using, or should I use an outbound command? Any help would be appreciated. Thanks.