<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Thanks for letting us know in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930345#M150159</link>
    <description>&lt;P&gt;Thanks for letting us know the final resolution.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It's maddening sometimes to find such basic features not working. The earlier IOS-XE code has been very buggy in this regard.&lt;/P&gt;</description>
    <pubDate>Mon, 12 Sep 2016 21:15:26 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2016-09-12T21:15:26Z</dc:date>
    <item>
      <title>No Internet Access but connected to domain. New install of Windows 7</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930319#M150133</link>
      <description>&lt;P&gt;Hi everyone&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have a problem that's driving me nuts trying to troubleshoot. Brand new install of Windows 7 Dell latitude. I'm connected to our domain, but cannot browse the Internet with exclamation icon and msg "No Internet Access."&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I can ping all internal servers and gateway. No issues there.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I took the laptop home and connected to my home network fine. Internet connection works perfectly.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;But when I get back to the office, I tried connecting with both wired and wireless, both gives &lt;SPAN&gt;msg "No Internet Access."&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Firewall is ASA 5505. I did some googling, and found some info on IP Shunning, but when I check my firewall settings, shunning is not enabled.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Any help is greatly appreciated. Thanks.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:14:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930319#M150133</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2019-03-12T08:14:50Z</dc:date>
    </item>
    <item>
      <title>Are all of your network</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930320#M150134</link>
      <description>&lt;P&gt;Are all of your network settings (IP address, DNS and domain name) set to "auto"?&lt;/P&gt;
&lt;P&gt;When you have the failed connectivity, check "ipconfig /all" to see that you are getting everything you expect.&lt;/P&gt;
&lt;P&gt;If that looks good, then check the firewall. First make sure traffic from your PC is reaching it (packet capture is easiest). Then make sure it is getting passed through and NATted like you expect (packet-tracer tool)&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 00:24:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930320#M150134</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-09-08T00:24:27Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930321#M150135</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;yes. ipconfig /all shows all the right ip addresses.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I not all that familiar with ASA firewalls, so if you can walk me through setting up the packet capture I would really appreciate it.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Some new developments. so I connected the new laptop directly to the ASA firewall and I get an Internet Connection immediately. I can ping all internal servers and browse the internet.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If I plug it back into the Cisco switch I lose internet connection, but I'm still connected to the domain/network.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I tried setting up another new desktop and I'm getting the exact same issue. No Internet Access, but I can join domain and connect to all internal servers.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;All other workstation already on the network is functioning like normal. No problems. It's only affecting any new machines I'm connecting to the network.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Any idea what's going on?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 14:35:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930321#M150135</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T14:35:53Z</dc:date>
    </item>
    <item>
      <title>Here's how to do a packet</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930322#M150136</link>
      <description>&lt;P&gt;Here's how to do a packet trace on an ASA:&lt;/P&gt;
&lt;PRE class="prettyprint"&gt;packet-tracer input inside tcp &amp;lt;your pc address&amp;gt; 1025 8.8.8.8 80&lt;/PRE&gt;
&lt;P&gt;That injects a dummy packet to the ASA's inside interface from your client's address using a random ephemeral tcp port as the source with a destination of an Internet address on port 80. (It doesn't matter whether or not anything at that address is listening on port 80 - we only care if the packet leaves the ASA.)&lt;/P&gt;
&lt;P&gt;You can do the same thing from the ASDM GUI (Tools &amp;gt; Packet tracer)&lt;/P&gt;
&lt;P&gt;If that command tells you at the end the packet is "ALLOWED", then your traffic is probably not reaching the ASA. To verify that, use the packet capture wizard (Wizards &amp;gt; Packet Capture Wizard) to look for the traffic incoming from your PC's source address.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 17:57:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930322#M150136</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-09-08T17:57:26Z</dc:date>
    </item>
    <item>
      <title>I ran the packet-tracer and</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930323#M150137</link>
      <description>&lt;P&gt;I ran the packet-tracer and the packet was "Allowed."&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm pretty sure the traffic is not reaching the ASA for some reason.&lt;/P&gt;
&lt;P&gt;I just don't understand why all other workstations are working fine, but it's blocking traffic to ASA on all new computers I add to the network. Why are some traffic reaching the ASA and some not? strange.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 18:20:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930323#M150137</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T18:20:08Z</dc:date>
    </item>
    <item>
      <title>It could be any number of</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930324#M150138</link>
      <description>&lt;P&gt;It could be any number of things. Port security on your switch, an ACL in your core, a subnet mask mismatch somewhere, asymmetric routing etc.&lt;/P&gt;
&lt;P&gt;Break it down step by step. See if you can reach the core switch from your new PC. Then the ASA. Don't just use ping, use something that requires a 3-way handshake like telnet&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 18:29:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930324#M150138</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-09-08T18:29:32Z</dc:date>
    </item>
    <item>
      <title>Ok I can telnet into the core</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930325#M150139</link>
      <description>&lt;P&gt;Ok I can telnet into the core switch fine.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Telnet into ASA does not work. No connection.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 18:47:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930325#M150139</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T18:47:05Z</dc:date>
    </item>
    <item>
      <title>We normally disable telnet on</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930326#M150140</link>
      <description>&lt;P&gt;We normally disable telnet on the ASA.&lt;/P&gt;
&lt;P&gt;Make sure your source address / subnet is allowed in the ASA configuration (something like "ssh inside 0.0.0.0 0.0.0.0") and try ssh instead.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 18:50:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930326#M150140</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-09-08T18:50:17Z</dc:date>
    </item>
    <item>
      <title>Don't think it's disabled,</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930327#M150141</link>
      <description>&lt;P&gt;Don't think it's disabled, because&amp;nbsp;I can telnet into the ASA from my computer fine.&lt;/P&gt;
&lt;P&gt;It's just doesn't work from all new computers. &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 19:00:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930327#M150141</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T19:00:03Z</dc:date>
    </item>
    <item>
      <title>Check the packet capture I</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930328#M150142</link>
      <description>&lt;P&gt;Check the packet capture I noted earlier to see if the traffic is arriving at the AS inside interface.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 19:31:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930328#M150142</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-09-08T19:31:33Z</dc:date>
    </item>
    <item>
      <title>Can you walk me through the</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930329#M150143</link>
      <description>&lt;P&gt;Can you walk me through the Packet Capture Wizard?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Point of Ingress&lt;/P&gt;
&lt;P&gt;Packet match criteria &amp;gt; do i choose specify packet parameters?&lt;/P&gt;
&lt;P&gt;Then put in the source host and destination, protocol is IP?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Point of Egress&lt;/P&gt;
&lt;P&gt;input same parameters from point of ingress?&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 19:44:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930329#M150143</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T19:44:44Z</dc:date>
    </item>
    <item>
      <title>Point of ingress is Inside</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930330#M150144</link>
      <description>&lt;P&gt;Point of ingress is Inside interface.&lt;/P&gt;
&lt;P&gt;Match on your new PC source IP and netmask (255.255.255.255), protocol IP.&lt;/P&gt;
&lt;P&gt;Egress leave it as any (0.0.0.0 0.0.0.0) since you don't care - you are just seeing if the packets arrive.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 20:18:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930330#M150144</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-09-08T20:18:38Z</dc:date>
    </item>
    <item>
      <title>Here's what I got from the</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930331#M150145</link>
      <description>&lt;P&gt;Here's what I got from the problematic ip address. So that means packets are hitting the ASA?&lt;/P&gt;
&lt;TABLE width="1213" style="border-collapse: collapse; width: 1160px;" height="243"&gt;
&lt;TBODY&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD width="84" style="height: 15.0pt; width: 63pt;"&gt;136 p&lt;/TD&gt;
&lt;TD width="105" style="width: 79pt;"&gt;ackets captured&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;TD width="64" style="width: 48pt;"&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;1:00&lt;/TD&gt;
&lt;TD&gt;20:03.6&lt;/TD&gt;
&lt;TD&gt;802.1Q&lt;/TD&gt;
&lt;TD&gt;vlan#1&lt;/TD&gt;
&lt;TD&gt;P0&lt;/TD&gt;
&lt;TD colspan="5"&gt;192.168.1.5.137 &amp;gt; 192.168.1.255.137:&amp;nbsp; udp 50&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;2:00&lt;/TD&gt;
&lt;TD&gt;20:04.3&lt;/TD&gt;
&lt;TD&gt;802.1Q&lt;/TD&gt;
&lt;TD&gt;vlan#1&lt;/TD&gt;
&lt;TD&gt;P0&lt;/TD&gt;
&lt;TD colspan="12"&gt;192.168.1.5.50698 &amp;gt; 74.125.196.147.443: S 2402996771:2402996771(0) win 8192 &amp;lt;mss 1460,nop,wscale 8,nop,nop,sackOK&amp;gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;3:00&lt;/TD&gt;
&lt;TD&gt;20:04.3&lt;/TD&gt;
&lt;TD&gt;802.1Q&lt;/TD&gt;
&lt;TD&gt;vlan#1&lt;/TD&gt;
&lt;TD&gt;P0&lt;/TD&gt;
&lt;TD colspan="13"&gt;74.125.196.147.443 &amp;gt; 192.168.1.5.50698: S 3052699992:3052699992(0) ack 2402996772 win 42780 &amp;lt;mss 1380,nop,nop,sackOK,nop,wscale 7&amp;gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;4:00&lt;/TD&gt;
&lt;TD&gt;20:04.3&lt;/TD&gt;
&lt;TD&gt;802.1Q&lt;/TD&gt;
&lt;TD&gt;vlan#1&lt;/TD&gt;
&lt;TD&gt;P0&lt;/TD&gt;
&lt;TD colspan="5"&gt;192.168.1.5.137 &amp;gt; 192.168.1.255.137:&amp;nbsp; udp 50&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;5:00&lt;/TD&gt;
&lt;TD&gt;20:04.3&lt;/TD&gt;
&lt;TD&gt;802.1Q&lt;/TD&gt;
&lt;TD&gt;vlan#1&lt;/TD&gt;
&lt;TD&gt;P0&lt;/TD&gt;
&lt;TD colspan="12"&gt;192.168.1.5.50699 &amp;gt; 173.194.219.101.443: S 4101345537:4101345537(0) win 8192 &amp;lt;mss 1460,nop,wscale 8,nop,nop,sackOK&amp;gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;6:00&lt;/TD&gt;
&lt;TD&gt;20:04.3&lt;/TD&gt;
&lt;TD&gt;802.1Q&lt;/TD&gt;
&lt;TD&gt;vlan#1&lt;/TD&gt;
&lt;TD&gt;P0&lt;/TD&gt;
&lt;TD colspan="12"&gt;192.168.1.5.50700 &amp;gt; 74.125.21.95.443: S 2877423746:2877423746(0) win 8192 &amp;lt;mss 1460,nop,wscale 8,nop,nop,sackOK&amp;gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;7:00&lt;/TD&gt;
&lt;TD&gt;20:04.4&lt;/TD&gt;
&lt;TD&gt;802.1Q&lt;/TD&gt;
&lt;TD&gt;vlan#1&lt;/TD&gt;
&lt;TD&gt;P0&lt;/TD&gt;
&lt;TD colspan="13"&gt;173.194.219.101.443 &amp;gt; 192.168.1.5.50699: S 3949143392:3949143392(0) ack 4101345538 win 42780 &amp;lt;mss 1380,nop,nop,sackOK,nop,wscale 7&amp;gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;8:00&lt;/TD&gt;
&lt;TD&gt;20:04.4&lt;/TD&gt;
&lt;TD&gt;802.1Q&lt;/TD&gt;
&lt;TD&gt;vlan#1&lt;/TD&gt;
&lt;TD&gt;P0&lt;/TD&gt;
&lt;TD colspan="13"&gt;74.125.21.95.443 &amp;gt; 192.168.1.5.50700: S 2574977668:2574977668(0) ack 2877423747 win 42780 &amp;lt;mss 1380,nop,nop,sackOK,nop,wscale 7&amp;gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 15.0pt;"&gt;
&lt;TD style="height: 15.0pt;"&gt;9:00&lt;/TD&gt;
&lt;TD&gt;20:04.5&lt;/TD&gt;
&lt;TD&gt;802.1Q&lt;/TD&gt;
&lt;TD&gt;vlan#1&lt;/TD&gt;
&lt;TD&gt;P0&lt;/TD&gt;
&lt;TD colspan="12"&gt;192.168.1.5.50701 &amp;gt; 74.125.196.147.443: S 1885877685:1885877685(0) win 8192 &amp;lt;mss 1460,nop,wscale 8,nop,nop,sackOK&amp;gt;&lt;/TD&gt;
&lt;TD&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;</description>
      <pubDate>Thu, 08 Sep 2016 20:43:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930331#M150145</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T20:43:10Z</dc:date>
    </item>
    <item>
      <title>Here's what I got from the</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930332#M150146</link>
      <description>&lt;P&gt;deleted.. duplicate reply&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 20:46:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930332#M150146</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T20:46:27Z</dc:date>
    </item>
    <item>
      <title>Assuming your source is 192</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930333#M150147</link>
      <description>&lt;P&gt;Assuming your source is 192.168.1.5, it looks like they are coming in on a subinterface with tag for VLAN 1.&lt;/P&gt;
&lt;P&gt;I see return traffic from an internet host as well at 173.195.219.101.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 20:47:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930333#M150147</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-09-08T20:47:35Z</dc:date>
    </item>
    <item>
      <title>what should i try next? </title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930334#M150148</link>
      <description>&lt;P&gt;what should i try next?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;btw, thanks so much for helping me this problem.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 20:53:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930334#M150148</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T20:53:08Z</dc:date>
    </item>
    <item>
      <title>When you are logged into the</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930335#M150149</link>
      <description>&lt;P&gt;When you are logged into the ASA can you ping one of the new PCs?&lt;/P&gt;
&lt;P&gt;We have seen the outbound traffic reach the ASA. Packet-tracer shows it goes through OK. Packet capture shows that return traffic is sent on to the PCs.&lt;/P&gt;
&lt;P&gt;The one thing we have not checked is can the return traffic reach the new PCs.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 22:08:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930335#M150149</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-09-08T22:08:00Z</dc:date>
    </item>
    <item>
      <title>From the ASA I cannot ping</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930336#M150150</link>
      <description>&lt;P&gt;From the ASA I cannot ping any new PCs.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 192.168.1.5, timeout is 2 seconds:&lt;BR /&gt;?????&lt;BR /&gt;Success rate is 0 percent (0/5)&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I can ping any of the old PCs. That works.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 192.168.0.38, timeout is 2 seconds:&lt;BR /&gt;!!!!!&lt;BR /&gt;Success rate is 100 percent (5/5), round-trip min/avg/max = 1/1/1 ms&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 22:16:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930336#M150150</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T22:16:22Z</dc:date>
    </item>
    <item>
      <title>Are 192.168.0.x and 192.168.1</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930337#M150151</link>
      <description>&lt;P&gt;Are 192.168.0.x and 192.168.1.x in the same subnet (i.e. is the mask /23 or such)?&lt;/P&gt;
&lt;P&gt;If they are, all all devices set with the correct netmask?&lt;/P&gt;
&lt;P&gt;If they are not, how is the ASA supposed to know to return traffic to the 192.168.1.x host - routing or something?&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 23:25:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930337#M150151</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2016-09-08T23:25:51Z</dc:date>
    </item>
    <item>
      <title>yes, all devices have the</title>
      <link>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930338#M150152</link>
      <description>&lt;P&gt;yes, all devices have the same subnet mask 255.255.254.0&lt;/P&gt;
&lt;P&gt;Just for kicks, I rebooted the ASA and it didn't change anything. same problem.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Nothing was changed on the servers or network before this started happening. The only thing I did was join a new Windows 7 laptop to the network. so strange.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 23:50:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/no-internet-access-but-connected-to-domain-new-install-of/m-p/2930338#M150152</guid>
      <dc:creator>KYLE NGUYEN</dc:creator>
      <dc:date>2016-09-08T23:50:37Z</dc:date>
    </item>
  </channel>
</rss>

