This is the first time i have used this site so "HI ALL"
I am currently sitting my CCNA exam and have recently been tasked with setting up a Cisco 1760 router on our network to allow both internet access from the LAN and also inbound internet access to a Lotus Notes Sametime Server which has an "instant meeting" facility which allows programme sharing etc
We were previously using a Zyxel router which has a table for application ports. The way we allowed connection to the server from the internet was to enter the IP address of the server against port 80. This is obvoiusly not a good idea as it leaves the network open to attack.
The goal at the moment is to get the 1760 to the same level as the Zyxel (ie using ACLs to open and close the port as needed)
The current status is that we have access to the Internet and can send/ receive emails through the 1760. The NAT is configured and ACLs set up to allow SMTP traffic on port 25.
However when i "open" port 80 using the command access-list 100 permit tcp any any eq 80 and then ask someone external to enter the web address of the server, it prompts for the routers own access password!
This is intermittent, other times the meeting facility is accessible but when "join meeting" appears, you click the button, it opens another window but does not load.
Can anyone think of a reason for this?
The ports for Lotus Sametime are 1533 and 8081 but it uses HTTP tunnelling anyway so this traffic should come through port 80
Any suggestions would be gratefully accepted
I am currently sitting my CCNA exam and have recently been tasked with setting up a Cisco 1760 router on our network to allow both internet access from the LAN and also inbound internet access to a Lotus Notes Sametime Server which has an "instant meeting" facility which allows programme sharing etc
We were previously using a Zyxel router which has a table for application ports. The way we allowed connection to the server from the internet was to enter the IP address of the server against port 80. This is obvoiusly not a good idea as it leaves the network open to attack.
The goal at the moment is to get the 1760 to the same level as the Zyxel (ie using ACLs to open and close the port as needed)
The current status is that we have access to the Internet and can send/ receive emails through the 1760. The NAT is configured and ACLs set up to allow SMTP traffic on port 25.
However when i "open" port 80 using the command access-list 100 permit tcp any any eq 80 and then ask someone external to enter the web address of the server, it prompts for the routers own access password!
This is intermittent, other times the meeting facility is accessible but when "join meeting" appears, you click the button, it opens another window but does not load.
Can anyone think of a reason for this?
The ports for Lotus Sametime are 1533 and 8081 but it uses HTTP tunnelling anyway so this traffic should come through port 80
Any suggestions would be gratefully accepted