<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PBR on cisco ASA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3325239#M1064225</link>
    <description>&lt;P&gt;Dear all,&lt;/P&gt;
&lt;P&gt;I have a cisco asa vers. 8.4(2)8 with 2 outside interface. I need to redirect the traffic form only 1 host to use a different outside interface. I explane better&lt;/P&gt;
&lt;P&gt;Outside1 = internet traffic&lt;/P&gt;
&lt;P&gt;Outside2= single host traffic&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I tried to create a route-map but it seems does't possibile on my version.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Can anyone help me to do this ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you,&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Daniele.&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 15:17:31 GMT</pubDate>
    <dc:creator>pugliededaniele88</dc:creator>
    <dc:date>2020-02-21T15:17:31Z</dc:date>
    <item>
      <title>PBR on cisco ASA</title>
      <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3325239#M1064225</link>
      <description>&lt;P&gt;Dear all,&lt;/P&gt;
&lt;P&gt;I have a cisco asa vers. 8.4(2)8 with 2 outside interface. I need to redirect the traffic form only 1 host to use a different outside interface. I explane better&lt;/P&gt;
&lt;P&gt;Outside1 = internet traffic&lt;/P&gt;
&lt;P&gt;Outside2= single host traffic&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I tried to create a route-map but it seems does't possibile on my version.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Can anyone help me to do this ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you,&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Daniele.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:17:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3325239#M1064225</guid>
      <dc:creator>pugliededaniele88</dc:creator>
      <dc:date>2020-02-21T15:17:31Z</dc:date>
    </item>
    <item>
      <title>Re: PBR on cisco ASA</title>
      <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3325397#M1064226</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;PBR is available 9.4.1 onwards:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/asa94/release/notes/asarn94.html#pgfId-116518" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/asa94/release/notes/asarn94.html#pgfId-116518&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You would need to upgrade the ASA to 9.4.1 to get this support.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;
&lt;P&gt;AJ&lt;/P&gt;</description>
      <pubDate>Mon, 05 Feb 2018 16:12:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3325397#M1064226</guid>
      <dc:creator>Ajay Saini</dc:creator>
      <dc:date>2018-02-05T16:12:43Z</dc:date>
    </item>
    <item>
      <title>Re: PBR on cisco ASA</title>
      <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3325939#M1064227</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I see the software version availability and the last version available is 9.1.7. 9.4.1 is not available. Is this version not compatibile with asa 5510 ?&lt;/P&gt;</description>
      <pubDate>Tue, 06 Feb 2018 13:19:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3325939#M1064227</guid>
      <dc:creator>pugliededaniele88</dc:creator>
      <dc:date>2018-02-06T13:19:49Z</dc:date>
    </item>
    <item>
      <title>Re: PBR on cisco ASA</title>
      <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3326011#M1064228</link>
      <description>&lt;P&gt;Thats true, legacy ASA does not support the version 9.4.x and hence PBR.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;-&lt;/P&gt;
&lt;P&gt;HTH&lt;BR /&gt;AJ&lt;/P&gt;</description>
      <pubDate>Tue, 06 Feb 2018 15:20:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3326011#M1064228</guid>
      <dc:creator>Ajay Saini</dc:creator>
      <dc:date>2018-02-06T15:20:46Z</dc:date>
    </item>
    <item>
      <title>Re: PBR on cisco ASA</title>
      <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3326034#M1064229</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;can you explain me what means legacy asa ? is there a lists of the compatible device ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Daniele.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Feb 2018 15:47:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3326034#M1064229</guid>
      <dc:creator>pugliededaniele88</dc:creator>
      <dc:date>2018-02-06T15:47:07Z</dc:date>
    </item>
    <item>
      <title>Re: PBR on cisco ASA</title>
      <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3327268#M1064230</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can refer to following tables for the info. Legacy ASA means the old ASA 5500 devices. Newer ones came out as 5500-X series appliances followed by Firepower UTM appliances, likes of 2100, 4100, 7000 and 8000 series:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/compatibility/asamatrx.html#pgfId-112283" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/compatibility/asamatrx.html#pgfId-112283&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Refer to table 6.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;-&lt;/P&gt;
&lt;P&gt;HTH&lt;BR /&gt;AJ&lt;/P&gt;</description>
      <pubDate>Thu, 08 Feb 2018 05:51:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3327268#M1064230</guid>
      <dc:creator>Ajay Saini</dc:creator>
      <dc:date>2018-02-08T05:51:08Z</dc:date>
    </item>
    <item>
      <title>Re: PBR on cisco ASA</title>
      <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3327320#M1064231</link>
      <description>&lt;P&gt;thank you &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Feb 2018 08:21:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3327320#M1064231</guid>
      <dc:creator>pugliededaniele88</dc:creator>
      <dc:date>2018-02-08T08:21:16Z</dc:date>
    </item>
    <item>
      <title>Re: PBR on cisco ASA</title>
      <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3327522#M1064232</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I found a work-around with a nat rule to route the traffic from the host out another interface.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;object-group network NAVIGAZIONE_DIROTTATA&lt;/P&gt;
&lt;P&gt;&amp;nbsp;description --host dirottati verso l'interfaccia outside--&lt;/P&gt;
&lt;P&gt;&amp;nbsp;network-object 192.2.200.135 255.255.255.255&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;object network ANY&lt;/P&gt;
&lt;P&gt;&amp;nbsp;subnet 0.0.0.0 0.0.0.0&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;nat (inside,outside) source dynamic NAVIGAZIONE_DIROTTATA interface destination static ANY any&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="short_text"&gt;&lt;SPAN class=""&gt;I'm just waiting for confirmation from our customer that it works.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Feb 2018 13:57:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3327522#M1064232</guid>
      <dc:creator>pugliededaniele88</dc:creator>
      <dc:date>2018-02-08T13:57:10Z</dc:date>
    </item>
    <item>
      <title>Re: PBR on cisco ASA</title>
      <link>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3328163#M1064233</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I write to confirm that the nat rule works fine.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You need to pay attention at the function of proxy-arp. This function need to be disabled with command&lt;/P&gt;
&lt;P&gt;&amp;nbsp;sysopt noproxyarp inside&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 09 Feb 2018 11:55:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pbr-on-cisco-asa/m-p/3328163#M1064233</guid>
      <dc:creator>pugliededaniele88</dc:creator>
      <dc:date>2018-02-09T11:55:27Z</dc:date>
    </item>
  </channel>
</rss>

