<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA PBR problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403312#M1024929</link>
    <description>Are you using SIP ? Do you see SIP confirmation exchange ? Can you share your NAT and do you have inspect SIP enabled ?</description>
    <pubDate>Thu, 21 Jun 2018 12:52:02 GMT</pubDate>
    <dc:creator>Abdullo Salikhov</dc:creator>
    <dc:date>2018-06-21T12:52:02Z</dc:date>
    <item>
      <title>ASA PBR problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403301#M1024925</link>
      <description>&lt;P&gt;what trouble shooting commands are there available for PBR on ASA?&lt;/P&gt;
&lt;P&gt;ive created a pbr and its working outbound fine, the problem I have is an external IP coming inbound is translated and routed correctly however the return traffic doesnt see to leave the firewall.&lt;/P&gt;
&lt;P&gt;A packet cap on the outside and dmz interface shows traffic coming into the firewall from the internet. it gets translated from the public ip to the internal ip and routed to the dmz interface. I can see packets coming back from the internal server destined to the internet on the dmz interface but i dont see the packets leave the outside interface.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:54:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403301#M1024925</guid>
      <dc:creator>mickyq</dc:creator>
      <dc:date>2020-02-21T15:54:22Z</dc:date>
    </item>
    <item>
      <title>Re: ASA PBR problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403312#M1024929</link>
      <description>Are you using SIP ? Do you see SIP confirmation exchange ? Can you share your NAT and do you have inspect SIP enabled ?</description>
      <pubDate>Thu, 21 Jun 2018 12:52:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403312#M1024929</guid>
      <dc:creator>Abdullo Salikhov</dc:creator>
      <dc:date>2018-06-21T12:52:02Z</dc:date>
    </item>
    <item>
      <title>Re: ASA PBR problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403317#M1024931</link>
      <description>&lt;P&gt;im not using SIP. its just internet traffic to an internal server on 443&lt;/P&gt;</description>
      <pubDate>Thu, 21 Jun 2018 12:57:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403317#M1024931</guid>
      <dc:creator>mickyq</dc:creator>
      <dc:date>2018-06-21T12:57:24Z</dc:date>
    </item>
    <item>
      <title>Re: ASA PBR problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403342#M1024932</link>
      <description>I have tried on 9.6: PBR and NAT doesn't work on ASA (yet).&lt;BR /&gt;packet capture showed it as it works but traffic capture and production said something else.</description>
      <pubDate>Thu, 21 Jun 2018 13:41:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403342#M1024932</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2018-06-21T13:41:05Z</dc:date>
    </item>
    <item>
      <title>Re: ASA PBR problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403358#M1024934</link>
      <description>&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;the outbound dynamic nat with PBR seems to work ok. Im using v9.8&lt;/P&gt;
&lt;P&gt;is there a compatibility table?&lt;/P&gt;</description>
      <pubDate>Thu, 21 Jun 2018 14:04:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3403358#M1024934</guid>
      <dc:creator>mickyq</dc:creator>
      <dc:date>2018-06-21T14:04:41Z</dc:date>
    </item>
    <item>
      <title>Re: ASA PBR problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3404786#M1024936</link>
      <description>Can you share the NAT config that's used in conjunction with PBR?&lt;BR /&gt;&lt;BR /&gt;Thanks!</description>
      <pubDate>Mon, 25 Jun 2018 10:47:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3404786#M1024936</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2018-06-25T10:47:24Z</dc:date>
    </item>
    <item>
      <title>Re: ASA PBR problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3405591#M1024938</link>
      <description>&lt;P&gt;I have managed to find the problem but im not sure I understand why its happening.&lt;/P&gt;
&lt;P&gt;Outbound traffic is using the pbr and working.&lt;/P&gt;
&lt;P&gt;inbound traffic from the internet to one of our public IP's translated to a server in the dmz doesnt work.&lt;/P&gt;
&lt;P&gt;The problem seems to be with the return route from the server.&lt;/P&gt;
&lt;P&gt;I can only get it working with a static route. I assumed inbound traffic would create a session and return the traffic back to the interface it came in on.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Jun 2018 12:38:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-pbr-problem/m-p/3405591#M1024938</guid>
      <dc:creator>mickyq</dc:creator>
      <dc:date>2018-06-26T12:38:01Z</dc:date>
    </item>
  </channel>
</rss>

