<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic pls post your running in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093361#M133805</link>
    <description>&lt;P&gt;pls post your running configuration.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Safwan&lt;/P&gt;</description>
    <pubDate>Tue, 25 Jul 2017 09:33:35 GMT</pubDate>
    <dc:creator>Muhammed Safwan</dc:creator>
    <dc:date>2017-07-25T09:33:35Z</dc:date>
    <item>
      <title>ASA 5505 ping 8.8.8.8 but no internet access</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093360#M133804</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I'm configure my ASA 5505 firewall.&lt;/P&gt;
&lt;P&gt;I configure inside like 192.168.0.1 since our pcs are all with ip 192.168.0.X and outside 192.168.1.112 since our router is 192.168.1.1.&lt;/P&gt;
&lt;P&gt;I'm able to ping 8.8.8.8 (google) but from my pc I'm not able to reach internet. On my pc I have ip 192.168.0.6 subnet mask 255.255.255.0 and default gateway 192.168.0.1.&lt;/P&gt;
&lt;P&gt;Can you help me?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 09:44:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093360#M133804</guid>
      <dc:creator>ibedini</dc:creator>
      <dc:date>2019-03-12T09:44:03Z</dc:date>
    </item>
    <item>
      <title>pls post your running</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093361#M133805</link>
      <description>&lt;P&gt;pls post your running configuration.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Safwan&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 09:33:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093361#M133805</guid>
      <dc:creator>Muhammed Safwan</dc:creator>
      <dc:date>2017-07-25T09:33:35Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093362#M133806</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Please use the command:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;fixup protocol &lt;G class="gr_ gr_39 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling ins-del multiReplace" id="39" data-gr-id="39"&gt;icmp&lt;/G&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s1"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Aditya&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Please rate helpful and mark correct answers&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 09:34:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093362#M133806</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2017-07-25T09:34:24Z</dc:date>
    </item>
    <item>
      <title>Hi Muhammed,</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093363#M133807</link>
      <description>&lt;P&gt;Hi Muhammed,&lt;/P&gt;
&lt;P&gt;this are my configurations&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;!&lt;BR /&gt;interface Ethernet0/0&lt;BR /&gt;&amp;nbsp;switchport access vlan 2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/3&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/4&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/5&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/6&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/7&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.0.1 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan2&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 192.168.1.112 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;ftp mode passive&lt;BR /&gt;object network obj_any&lt;BR /&gt;&amp;nbsp;subnet 0.0.0.0 0.0.0.0&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;no arp permit-nonconnected&lt;BR /&gt;!&lt;BR /&gt;object network obj_any&lt;BR /&gt;&amp;nbsp;nat (inside,outside) dynamic interface&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 192.168.1.1 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout pat-xlate 0:00:30&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;timeout floating-conn 0:00:00&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;user-identity default-domain LOCAL&lt;BR /&gt;aaa authentication telnet console LOCAL&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.0.0 255.255.255.0 inside&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart&lt;BR /&gt;crypto ipsec security-association pmtu-aging infinite&lt;BR /&gt;crypto ca trustpoint _SmartCallHome_ServerCA&lt;BR /&gt;&amp;nbsp;no validation-usage&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_Launcher_Access_TrustPoint_0&lt;BR /&gt;&amp;nbsp;enrollment self&lt;BR /&gt;&amp;nbsp;fqdn none&lt;BR /&gt;&amp;nbsp;subject-name CN=192.168.0.1,CN=ciscoasa&lt;BR /&gt;&amp;nbsp;keypair ASDM_LAUNCHER&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_Launcher_Access_TrustPoint_1&lt;BR /&gt;&amp;nbsp;enrollment self&lt;BR /&gt;&amp;nbsp;fqdn none&lt;BR /&gt;&amp;nbsp;subject-name CN=192.168.0.1,CN=ciscoasa&lt;BR /&gt;&amp;nbsp;keypair ASDM_LAUNCHER&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;&lt;BR /&gt;telnet 192.168.0.0 255.255.255.0 inside&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;no ssh stricthostkeycheck&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;ssh key-exchange group dh-group1-sha1&lt;BR /&gt;console timeout 0&lt;BR /&gt;&lt;BR /&gt;dhcpd auto_config outside&lt;BR /&gt;!&lt;BR /&gt;dhcpd address 192.168.0.5-192.168.0.36 inside&lt;BR /&gt;dhcpd enable inside&lt;BR /&gt;!&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics access-list&lt;BR /&gt;no threat-detection statistics tcp-intercept&lt;BR /&gt;ssl trust-point ASDM_Launcher_Access_TrustPoint_1 inside vpnlb-ip&lt;BR /&gt;ssl trust-point ASDM_Launcher_Access_TrustPoint_1 inside&lt;BR /&gt;username cisco password 3USUcOPFUiMCO4Jk encrypted&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum client auto&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp; inspect ftp&lt;BR /&gt;&amp;nbsp; inspect h323 h225&lt;BR /&gt;&amp;nbsp; inspect h323 ras&lt;BR /&gt;&amp;nbsp; inspect rsh&lt;BR /&gt;&amp;nbsp; inspect rtsp&lt;BR /&gt;&amp;nbsp; inspect esmtp&lt;BR /&gt;&amp;nbsp; inspect sqlnet&lt;BR /&gt;&amp;nbsp; inspect skinny&lt;BR /&gt;&amp;nbsp; inspect sunrpc&lt;BR /&gt;&amp;nbsp; inspect xdmcp&lt;BR /&gt;&amp;nbsp; inspect sip&lt;BR /&gt;&amp;nbsp; inspect netbios&lt;BR /&gt;&amp;nbsp; inspect tftp&lt;BR /&gt;&amp;nbsp; inspect ip-options&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;prompt hostname context&lt;BR /&gt;call-home reporting anonymous&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 09:47:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093363#M133807</guid>
      <dc:creator>ibedini</dc:creator>
      <dc:date>2017-07-25T09:47:03Z</dc:date>
    </item>
    <item>
      <title>Hi Aditya,</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093364#M133810</link>
      <description>&lt;P&gt;Hi Aditya,&lt;/P&gt;
&lt;P&gt;what does the command do?&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 09:47:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093364#M133810</guid>
      <dc:creator>ibedini</dc:creator>
      <dc:date>2017-07-25T09:47:52Z</dc:date>
    </item>
    <item>
      <title>As you are testing the</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093365#M133811</link>
      <description>&lt;P&gt;As you are testing the reachability to internet with ping , you have to allow the ping on outside interface with below command.&lt;/P&gt;
&lt;P&gt;access-list acl-outside extended permit icmp any any&lt;BR /&gt;access-group acl-outside in interface outside&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Safwan&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 09:59:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093365#M133811</guid>
      <dc:creator>Muhammed Safwan</dc:creator>
      <dc:date>2017-07-25T09:59:06Z</dc:date>
    </item>
    <item>
      <title>From my pc I'm able to ping 8</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093366#M133812</link>
      <description>&lt;P&gt;From my pc I'm able to ping 8.8.8.8 but not ping www.google.com&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 10:06:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093366#M133812</guid>
      <dc:creator>ibedini</dc:creator>
      <dc:date>2017-07-25T10:06:20Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093367#M133813</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;This would enable &lt;G class="gr_ gr_18 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling ins-del multiReplace" id="18" data-gr-id="18"&gt;icmp&lt;/G&gt;&amp;nbsp;inspection through ASA so that you do not need to enable access-list for every traffic:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;https://supportforums.cisco.com/discussion/11124056/why-enable-icmp-inspection-will-allow-icmp-traffic-pass-asa&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s1"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Aditya&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Please rate helpful and mark correct answers&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 10:09:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093367#M133813</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2017-07-25T10:09:31Z</dc:date>
    </item>
    <item>
      <title>The result of the command is:</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093368#M133814</link>
      <description>&lt;P&gt;The result of the command is: converting 'fixup protocol icmp ' to MPF commands and change anything&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 10:09:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093368#M133814</guid>
      <dc:creator>ibedini</dc:creator>
      <dc:date>2017-07-25T10:09:54Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093369#M133815</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Please check your DNS settings on PC.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Manually add a DNS server and then test.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s1"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Aditya&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Please rate helpful and mark correct answers&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 10:19:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093369#M133815</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2017-07-25T10:19:55Z</dc:date>
    </item>
    <item>
      <title>Adding DNS on my pc, internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093370#M133816</link>
      <description>&lt;P&gt;Adding DNS on my pc, internet works ok. Is there any way to put DNS inside the firewall? We have many pcs and it would be hard to do.&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 10:23:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093370#M133816</guid>
      <dc:creator>ibedini</dc:creator>
      <dc:date>2017-07-25T10:23:42Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093371#M133817</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If you are assigning IP addresses through ASA then you can add DNS on it.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If not then the DHCP server assigning IP's should push a DNS server to the &lt;G class="gr_ gr_128 gr-alert gr_gramm gr_inline_cards gr_run_anim Grammar multiReplace" id="128" data-gr-id="128"&gt;PC's&lt;/G&gt;.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s1"&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Aditya&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Please rate helpful and mark correct answers&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2017 13:10:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-ping-8-8-8-8-but-no-internet-access/m-p/3093371#M133817</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2017-07-25T13:10:30Z</dc:date>
    </item>
  </channel>
</rss>

