<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Routing between ASA 5510 interfaces in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4117415#M1071977</link>
    <description>&lt;P&gt;Hi Guys&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have Cisco ASA 5510 at one of our sites&lt;/P&gt;&lt;P&gt;i have an issue with this asa, the servers at inside zone with 100 level security can`t reach to the outside zone level zero&lt;/P&gt;&lt;P&gt;when i try to ping from the server, it can reach to the inside interface ( his GW ), but i can`t ping the outside interface at same ASA&lt;/P&gt;&lt;P&gt;what i understand that by default this ping should be work because it came from zone with high security level to zone with low security level&lt;/P&gt;&lt;P&gt;Or, there are some routing configuration required between ASA interfaces i should do it&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Mon, 13 Jul 2020 04:55:06 GMT</pubDate>
    <dc:creator>haytham elsamadony</dc:creator>
    <dc:date>2020-07-13T04:55:06Z</dc:date>
    <item>
      <title>Routing between ASA 5510 interfaces</title>
      <link>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4117415#M1071977</link>
      <description>&lt;P&gt;Hi Guys&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have Cisco ASA 5510 at one of our sites&lt;/P&gt;&lt;P&gt;i have an issue with this asa, the servers at inside zone with 100 level security can`t reach to the outside zone level zero&lt;/P&gt;&lt;P&gt;when i try to ping from the server, it can reach to the inside interface ( his GW ), but i can`t ping the outside interface at same ASA&lt;/P&gt;&lt;P&gt;what i understand that by default this ping should be work because it came from zone with high security level to zone with low security level&lt;/P&gt;&lt;P&gt;Or, there are some routing configuration required between ASA interfaces i should do it&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jul 2020 04:55:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4117415#M1071977</guid>
      <dc:creator>haytham elsamadony</dc:creator>
      <dc:date>2020-07-13T04:55:06Z</dc:date>
    </item>
    <item>
      <title>Re: Routing between ASA 5510 interfaces</title>
      <link>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4117438#M1071978</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Are you attempting to ping the ASAs outside interface from a device connected to the inside of the ASA? If so that won’t work (by design).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you are pinging through the ASA to another device you need to ensure you inspect icmp, use the command “fixup protocol icmp”.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jul 2020 05:44:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4117438#M1071978</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2020-07-13T05:44:48Z</dc:date>
    </item>
    <item>
      <title>Re: Routing between ASA 5510 interfaces</title>
      <link>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118220#M1072024</link>
      <description>&lt;P&gt;yes, i want to ping from device connected to inside interface to outside interface&lt;/P&gt;&lt;P&gt;OK i can`t by design, but if i want to check the connectivity between this device and other behind this firewall&lt;/P&gt;&lt;P&gt;how i can know that the traffic from inside device walk through the firewall to the destination ??&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 07:09:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118220#M1072024</guid>
      <dc:creator>haytham elsamadony</dc:creator>
      <dc:date>2020-07-14T07:09:44Z</dc:date>
    </item>
    <item>
      <title>Re: Routing between ASA 5510 interfaces</title>
      <link>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118231#M1072028</link>
      <description>You may not be able to ping the ASAs outside interface when connected to the inside, but you can certainly ping through the ASA - so ping the other device behind the firewall, that will work. For that to work you will need the icmp inspect configured using the command I previously provided "fixup protocol icmp".&lt;BR /&gt;&lt;BR /&gt;HTH</description>
      <pubDate>Tue, 14 Jul 2020 07:27:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118231#M1072028</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2020-07-14T07:27:34Z</dc:date>
    </item>
    <item>
      <title>Re: Routing between ASA 5510 interfaces</title>
      <link>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118261#M1072030</link>
      <description>&lt;P&gt;Ok so what i understand that, to ping the other device behind the firewall i must apply this icmp inspect&amp;nbsp;&lt;/P&gt;&lt;P&gt;and without this command i will not be able to ping through the firewall&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;is this right ?&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 08:00:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118261#M1072030</guid>
      <dc:creator>haytham elsamadony</dc:creator>
      <dc:date>2020-07-14T08:00:24Z</dc:date>
    </item>
    <item>
      <title>Re: Routing between ASA 5510 interfaces</title>
      <link>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118269#M1072031</link>
      <description>&lt;P&gt;Correct.&lt;/P&gt;
&lt;P&gt;Alternatively you could explictly permit icmp inbound on the outside interface, however most people enable icmp inspection using the command I provided.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 08:08:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118269#M1072031</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2020-07-14T08:08:28Z</dc:date>
    </item>
    <item>
      <title>Re: Routing between ASA 5510 interfaces</title>
      <link>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118277#M1072033</link>
      <description>&lt;P&gt;Ok thanks Rob your replies were very helpful for me&lt;/P&gt;&lt;P&gt;thanks again&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 08:18:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-between-asa-5510-interfaces/m-p/4118277#M1072033</guid>
      <dc:creator>haytham elsamadony</dc:creator>
      <dc:date>2020-07-14T08:18:20Z</dc:date>
    </item>
  </channel>
</rss>

