networking-forum.com
Community BlogCommunity Wiki * Register  * Search  * Login
View unanswered postsView active topics

All times are UTC - 6 hours [ DST ]



Post new topic Reply to topic  [ 2 posts ] 
Author Message
PostPosted: Tue Jun 19, 2012 4:30 pm 
Offline
Site Admin
Site Admin
User avatar

Joined: Mon Dec 06, 2004 6:46 pm
Posts: 10364
Location: McKinney, TX
Certs: CCNA
If you're using static PAT to map incoming sessions to an internal resource on an ASA like this:

Code:
hostname(config)#static (inside, outside) tcp 4.2.2.1 telnet 10.1.1.15 telnet netmask 255.255.255.255


Are you limited to ~65k inbound connections to that server based on the number of source ports used in the ASA as it translates and passes the traffic along to the server? (Assume connections are coming from multiple external hosts.)

_________________
Find networking-forum.com on Facebook, LinkedIn, Twitter, Google+,or subscribe to the site's RSS feeds.


Top
 Profile  
 
PostPosted: Tue Jun 19, 2012 6:02 pm 
Offline
Site Admin
Site Admin
User avatar

Joined: Mon Dec 06, 2004 6:46 pm
Posts: 10364
Location: McKinney, TX
Certs: CCNA
I thought about this a bit more and I think that the source IP and port are preserved in this configuration so there is no limit of 65k source ports in the ASA. So you could, in theory, have many more than 65k connections to the internal server from external hosts.

Right?

_________________
Find networking-forum.com on Facebook, LinkedIn, Twitter, Google+,or subscribe to the site's RSS feeds.


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 2 posts ] 

All times are UTC - 6 hours [ DST ]


Who is online

Users browsing this forum: haulover, Simpleman123, totaluser and 40 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group