<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA interface Subnet in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928246#M1104490</link>
    <description>&lt;P&gt;You can not use same IP address&amp;nbsp; inside and outside ( that is not accepted)&lt;/P&gt;
&lt;P&gt;Why do you need same IP address space inside and outside ?&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Does ASA make decision by looking to the subnet mask and doesn't care of IP network portion to differentiate&amp;nbsp; ?&amp;nbsp; - yes it does.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;you can subnet 192.168.10.0/24 in to /25 and use same subnet inside (first half )and outside.(second half).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 24 Sep 2023 07:03:22 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2023-09-24T07:03:22Z</dc:date>
    <item>
      <title>ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928196#M1104487</link>
      <description>&lt;P&gt;Hello guys&lt;/P&gt;&lt;P&gt;I'm on ASA firewall, to assign IP for two interface- 1-int inside and the other is 2-int outside&amp;nbsp;&lt;/P&gt;&lt;P&gt;for inside int 192.168.10.20 255.255.255.0 and outside int 192.168.10.20 255.255.255.0,it pops the below sys log message.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Failed to apply IP address to interface GigabitEthernet0/0, as the network overlaps with&lt;BR /&gt;the interface GigabitEthernet0/2. Two interfaces cannot be in the same subnet.&lt;/P&gt;&lt;P&gt;Does ASA make decision by looking to the subnet mask and doesn't care of IP network portion to differentiate&amp;nbsp; ?&lt;/P&gt;&lt;P&gt;what is the solution for this ?&lt;/P&gt;&lt;P&gt;Thank you&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 23 Sep 2023 23:08:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928196#M1104487</guid>
      <dc:creator>M.Sultan</dc:creator>
      <dc:date>2023-09-23T23:08:34Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928246#M1104490</link>
      <description>&lt;P&gt;You can not use same IP address&amp;nbsp; inside and outside ( that is not accepted)&lt;/P&gt;
&lt;P&gt;Why do you need same IP address space inside and outside ?&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Does ASA make decision by looking to the subnet mask and doesn't care of IP network portion to differentiate&amp;nbsp; ?&amp;nbsp; - yes it does.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;you can subnet 192.168.10.0/24 in to /25 and use same subnet inside (first half )and outside.(second half).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 24 Sep 2023 07:03:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928246#M1104490</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-09-24T07:03:22Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928248#M1104491</link>
      <description>&lt;P&gt;The asa is work as router so role apply to router apply to asa.&lt;/P&gt;
&lt;P&gt;Why you want same IP in inside and outside interface?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can config asa as transparent and hence inside and outside can share same subnet (not same IP)&lt;/P&gt;</description>
      <pubDate>Sun, 24 Sep 2023 07:09:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928248#M1104491</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-09-24T07:09:08Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928504#M1104499</link>
      <description>&lt;P&gt;for inside int 192.168.20.20 255.255.255.0 and outside int 192.168.10.20 255.255.255.0,it pops the below sys log message.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Failed to apply IP address to interface GigabitEthernet0/0, as the network overlaps with&lt;BR /&gt;the interface GigabitEthernet0/2. Two interfaces cannot be in the same subnet.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;there was an error sorry not the same subnet one is 192.168.20.20 255.255.255.0 and the other is 192.168.10.20 255.255.255.0 two different networks.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2023 08:35:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928504#M1104499</guid>
      <dc:creator>M.Sultan</dc:creator>
      <dc:date>2023-09-25T08:35:10Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928505#M1104500</link>
      <description>&lt;P&gt;for inside int 192.168.20.20 255.255.255.0 and outside int 192.168.10.20 255.255.255.0,it pops the below sys log message.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Failed to apply IP address to interface GigabitEthernet0/0, as the network overlaps with&lt;BR /&gt;the interface GigabitEthernet0/2. Two interfaces cannot be in the same subnet.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;there was an error sorry not the same subnet one is 192.168.20.20 255.255.255.0 and the other is 192.168.10.20 255.255.255.0 two different networks.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2023 08:35:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928505#M1104500</guid>
      <dc:creator>M.Sultan</dc:creator>
      <dc:date>2023-09-25T08:35:50Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928508#M1104502</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1503394"&gt;@M.Sultan&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Could you please post the output of the "show run interface" command, for Gi0/0 and Gi0/2? If what you wrote is correct, I see no overlaps, thus no reason for ASA to give you that message. Could it be that mask is /23 on one interface?&lt;/P&gt;
&lt;P&gt;Kind regards,&lt;/P&gt;
&lt;P&gt;Milos&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2023 08:43:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928508#M1104502</guid>
      <dc:creator>Milos_Jovanovic</dc:creator>
      <dc:date>2023-09-25T08:43:56Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928510#M1104504</link>
      <description>&lt;P&gt;Share output of&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Show interface ip breif&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2023 08:44:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928510#M1104504</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-09-25T08:44:52Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928516#M1104506</link>
      <description>&lt;P&gt;Resolving confusion :&lt;/P&gt;&lt;P&gt;Imagine an ASA firewall, inside = interface gig0/0 ip add 192.168.10.20 255.255.255.0&amp;nbsp;&lt;/P&gt;&lt;P&gt;outside= interface gig0/1 ip add 192.168.20.20 255.255.255.0&lt;/P&gt;&lt;P&gt;it says overlap while it should'nt because i use two different network IPs not the same IP.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2023 08:50:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928516#M1104506</guid>
      <dc:creator>M.Sultan</dc:creator>
      <dc:date>2023-09-25T08:50:05Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928518#M1104507</link>
      <description>&lt;P&gt;Resolving confusion :&lt;/P&gt;&lt;P&gt;Imagine an ASA firewall, inside = interface gig0/0 ip add 192.168.10.20 255.255.255.0&amp;nbsp;&lt;/P&gt;&lt;P&gt;outside= interface gig0/1 ip add 192.168.20.20 255.255.255.0&lt;/P&gt;&lt;P&gt;it says overlap while it should'nt because i use two different network IPs not the same IP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2023 08:50:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928518#M1104507</guid>
      <dc:creator>M.Sultan</dc:creator>
      <dc:date>2023-09-25T08:50:39Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928531#M1104508</link>
      <description>&lt;P&gt;I do understand what you are trying to achieve. However, there is some configuration on your device that makes ASA to believe you are overlapping with existing configuration. Based on what you wrote here and your previous warning message, it looks to me that scope 192.168.10.0/24 is already used on Gi0/2, while you are trying to configure it on Gi0/0 now.&lt;/P&gt;
&lt;P&gt;Kind regards,&lt;/P&gt;
&lt;P&gt;Milos&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2023 09:06:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928531#M1104508</guid>
      <dc:creator>Milos_Jovanovic</dc:creator>
      <dc:date>2023-09-25T09:06:13Z</dc:date>
    </item>
    <item>
      <title>Re: ASA interface Subnet</title>
      <link>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928828#M1104536</link>
      <description>&lt;LI-CODE lang="markup"&gt; inside int 192.168.20.20 255.255.255.0 and outside int 192.168.10.20 255.255.255.0&lt;/LI-CODE&gt;
&lt;P&gt;if the 3rd octet changed that should work - until the config already applied and you try to use same IP it will not work&lt;/P&gt;
&lt;P&gt;check interface config make sure when you configuration doing do not overlap same subnet.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Sep 2023 14:06:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-interface-subnet/m-p/4928828#M1104536</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-09-25T14:06:55Z</dc:date>
    </item>
  </channel>
</rss>

