下面是配置。端口重定向正常,但访问列表中允许的端口范围和其他端口未打开:
object network TEST_PUBLIC_IP
host 10.10.10.10
object-group service PROD_101 tcp
port-object eq 8443
port-object eq 922
port-object eq ssh
port-object eq https
port-object range 8000 8200
object network TEST_PRIVATE_IP
host 1.1.1.1.
nat (PRODUCTION,OUTSIDE) static TEST_PUBLIC_IP service tcp 8085 www
access-list Outside_IN extended permit tcp any object TEST_PRIVATE_IP object-group PROD_101
access-group Outside_IN in interface outside