<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: unable to ssh to ASA on outside interface? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818772#M1099703</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/135620"&gt;@nflnetwork&lt;/a&gt; that command should permit access SSH access from any IP address connecting on the outside interface, no ACL required.&lt;/P&gt;
&lt;P&gt;Can you actually SSH to the ASA from any other interface?&lt;BR /&gt;Is authentication and RSA keypair already setup?&lt;/P&gt;
&lt;P&gt;Example - &lt;A href="https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/118075-configure-asa-00.pdf" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/118075-configure-asa-00.pdf&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;username admin password &amp;lt;password&amp;gt; privilege 15&lt;BR /&gt;crypto key generate rsa modulus 2048&lt;BR /&gt;aaa authentication ssh console LOCAL&lt;BR /&gt;ssh version 2&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 20 Apr 2023 17:16:04 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2023-04-20T17:16:04Z</dc:date>
    <item>
      <title>unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818765#M1099702</link>
      <description>&lt;P&gt;i aded ssh 0.0.0.0 0.0.0.0 Outside but still cannot connect ssh to my outside interfae&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;do I also require any access-list?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;do we have any example i can look at?&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 17:00:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818765#M1099702</guid>
      <dc:creator>nflnetwork</dc:creator>
      <dc:date>2023-04-20T17:00:26Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818772#M1099703</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/135620"&gt;@nflnetwork&lt;/a&gt; that command should permit access SSH access from any IP address connecting on the outside interface, no ACL required.&lt;/P&gt;
&lt;P&gt;Can you actually SSH to the ASA from any other interface?&lt;BR /&gt;Is authentication and RSA keypair already setup?&lt;/P&gt;
&lt;P&gt;Example - &lt;A href="https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/118075-configure-asa-00.pdf" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/118075-configure-asa-00.pdf&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;username admin password &amp;lt;password&amp;gt; privilege 15&lt;BR /&gt;crypto key generate rsa modulus 2048&lt;BR /&gt;aaa authentication ssh console LOCAL&lt;BR /&gt;ssh version 2&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 17:16:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818772#M1099703</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-20T17:16:04Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818773#M1099704</link>
      <description>&lt;P&gt;Try this way&lt;/P&gt;
&lt;P&gt;Add new interfaces (any one)&lt;/P&gt;
&lt;P&gt;Make it security level =0 and make security level of outside interface =1&lt;/P&gt;
&lt;P&gt;Abd the&amp;nbsp; try ssh to ASA&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 17:16:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818773#M1099704</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-20T17:16:23Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818783#M1099705</link>
      <description>&lt;P&gt;still not able to pass traffic.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ssh traffic on my outside interface OR inside traffic out to Outside other than ICMP&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;also noticing cannot get inside, outside traffic working now&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i can ping 8.8.8.8 from inside host but cannot get anything else&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;no ACL should be required for this correct???&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ge0/0 -wan&amp;nbsp;&lt;/P&gt;&lt;P&gt;security level 1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ge 0/1 - lan&amp;nbsp;&lt;/P&gt;&lt;P&gt;security level 100&lt;/P&gt;&lt;P&gt;nat (Inside,Outside) dynamic interface&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 17:50:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818783#M1099705</guid>
      <dc:creator>nflnetwork</dc:creator>
      <dc:date>2023-04-20T17:50:14Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818786#M1099706</link>
      <description>&lt;P&gt;No ACL require but there must be any interface in ASA that have security level lower than outside, add any dummy interface and check.&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 17:54:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818786#M1099706</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-20T17:54:43Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818789#M1099707</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/135620"&gt;@nflnetwork&lt;/a&gt; if you cannot from SSH from any interface do you even have the 3DES/AES license?&lt;/P&gt;
&lt;P&gt;You didn't respond to the initial question regarding with you have a RSA keypair and authentication setup.&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 17:58:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818789#M1099707</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-20T17:58:13Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818791#M1099708</link>
      <description>&lt;P&gt;configured ge0/2 with security level 0&amp;nbsp;&lt;/P&gt;&lt;P&gt;changed ge0/0 - wan to security level 1&lt;/P&gt;&lt;P&gt;same issue&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 17:58:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818791#M1099708</guid>
      <dc:creator>nflnetwork</dc:creator>
      <dc:date>2023-04-20T17:58:48Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818795#M1099710</link>
      <description>&lt;P&gt;if not solve you issue then check&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp; suggestion&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 18:03:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818795#M1099710</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-20T18:03:17Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818797#M1099711</link>
      <description>&lt;P&gt;yes, it works on inside interface.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 18:04:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818797#M1099711</guid>
      <dc:creator>nflnetwork</dc:creator>
      <dc:date>2023-04-20T18:04:50Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818802#M1099712</link>
      <description>&lt;P&gt;yes i can SSH from the inside interface - no issue&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 18:12:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818802#M1099712</guid>
      <dc:creator>nflnetwork</dc:creator>
      <dc:date>2023-04-20T18:12:21Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818807#M1099713</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/135620"&gt;@nflnetwork&lt;/a&gt; so when you fail to SSH to the outside interface, where are you physically connected? You cannot be connected on the inside and SSH to the outside interface, that won't work. You'd need to SSH to the outside interface when connected on the outside.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 18:21:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818807#M1099713</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-04-20T18:21:11Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818809#M1099714</link>
      <description>&lt;P&gt;host on my LAN (192.168.254.2) &amp;gt; to inside interface on ASA (192.168.254.1) - ssh works&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;when trying to ssh to outside interface i am on the internet&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 18:23:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818809#M1099714</guid>
      <dc:creator>nflnetwork</dc:creator>
      <dc:date>2023-04-20T18:23:42Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818811#M1099715</link>
      <description>&lt;P&gt;Under g0/2&lt;/P&gt;
&lt;P&gt;No shut&amp;nbsp;&lt;/P&gt;
&lt;P&gt;And check again.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 18:23:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818811#M1099715</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-20T18:23:54Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818813#M1099716</link>
      <description>&lt;P&gt;done. no change&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 18:26:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818813#M1099716</guid>
      <dc:creator>nflnetwork</dc:creator>
      <dc:date>2023-04-20T18:26:24Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818822#M1099717</link>
      <description>&lt;P&gt;Ok, last point to check is are you config any PAT of SSH in asa?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 18:43:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818822#M1099717</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-20T18:43:19Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818828#M1099718</link>
      <description>&lt;P&gt;the only nat i have is&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;object network inside-subnet&lt;BR /&gt; subnet 192.168.254 255.255.255.0&lt;BR /&gt; nat (inside,outside) dynamic interface&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 18:53:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818828#M1099718</guid>
      <dc:creator>nflnetwork</dc:creator>
      <dc:date>2023-04-20T18:53:48Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818842#M1099720</link>
      <description>&lt;P&gt;hello all - it is workin now.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we had an upstream WAN switch with an ACL blocking the traffic.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 19:38:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818842#M1099720</guid>
      <dc:creator>nflnetwork</dc:creator>
      <dc:date>2023-04-20T19:38:00Z</dc:date>
    </item>
    <item>
      <title>Re: unable to ssh to ASA on outside interface?</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818844#M1099722</link>
      <description>&lt;P&gt;glad your issue solved&lt;BR /&gt;thanks for update&amp;nbsp;&lt;BR /&gt;just for note it work with or without security level change of OUTside interface ?&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 19:40:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ssh-to-asa-on-outside-interface/m-p/4818844#M1099722</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-04-20T19:40:18Z</dc:date>
    </item>
  </channel>
</rss>

