<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA inside &amp;lt;----&amp;gt; outside not working in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879065#M153259</link>
    <description>&lt;P&gt;Guys, I´m new to ASA FW, Im facing some difficults to get it work correctly.&lt;/P&gt;
&lt;P&gt;Issue is, this was moved by customer and he has no documentation at all. All cables everything was disconnected.&lt;/P&gt;
&lt;P&gt;Anyway, right now I cabled it like this:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;SWITCH &amp;nbsp;&amp;lt;-------&amp;gt; FIREWALL INSIDE (G0/0 - BVI1) &amp;lt;-----&amp;gt; FIREWALL OUTSIDE (G0/1 -BVI1) &amp;lt;-----&amp;gt; ROUTER INTERNET&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Ping tests:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Firewall (BVI1 - 192.168.100.3) - Switch (192.168.100.6) - OK&lt;/P&gt;
&lt;P&gt;Firewall - Router (192.168.100.1) - OK&lt;/P&gt;
&lt;P&gt;Firewall - Internet (8.8.8.8) - OK&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Switch &lt;SPAN&gt;(192.168.100.6)&amp;nbsp;&lt;/SPAN&gt;- Firewall &lt;SPAN&gt;(BVI1 - 192.168.100.3)&amp;nbsp;&lt;/SPAN&gt;- OK&lt;/P&gt;
&lt;P&gt;Switch &lt;SPAN&gt;(192.168.100.6)&amp;nbsp;&lt;/SPAN&gt;- Router &lt;SPAN&gt;(192.168.100.1)&amp;nbsp;&lt;/SPAN&gt;- Not Working&lt;/P&gt;
&lt;P&gt;Switch &lt;SPAN&gt;(192.168.100.6)&amp;nbsp;&lt;/SPAN&gt;- Internet (8.8.8.8) - Not working&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Router &lt;SPAN&gt;(192.168.100.1)&lt;/SPAN&gt;&amp;nbsp;- Firewall &lt;SPAN&gt;(BVI1 - 192.168.100.3)&amp;nbsp;&lt;/SPAN&gt;- OK&lt;/P&gt;
&lt;P&gt;Router &lt;SPAN&gt;(192.168.100.1)&amp;nbsp;&lt;/SPAN&gt;- Switch &lt;SPAN&gt;(192.168.100.6)&amp;nbsp;&lt;/SPAN&gt;- Not Working&lt;/P&gt;
&lt;P&gt;Router &lt;SPAN&gt;(192.168.100.1)&amp;nbsp;&lt;/SPAN&gt;- Internet (8.8.8.8) - OK&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Basically inside to outside is not working.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If I remove the firewall and plug the Router on the switch, everything works.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Am I missing something? Configuration is attached.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks!&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 07:51:08 GMT</pubDate>
    <dc:creator>Caue W</dc:creator>
    <dc:date>2019-03-12T07:51:08Z</dc:date>
    <item>
      <title>ASA inside &lt;----&gt; outside not working</title>
      <link>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879065#M153259</link>
      <description>&lt;P&gt;Guys, I´m new to ASA FW, Im facing some difficults to get it work correctly.&lt;/P&gt;
&lt;P&gt;Issue is, this was moved by customer and he has no documentation at all. All cables everything was disconnected.&lt;/P&gt;
&lt;P&gt;Anyway, right now I cabled it like this:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;SWITCH &amp;nbsp;&amp;lt;-------&amp;gt; FIREWALL INSIDE (G0/0 - BVI1) &amp;lt;-----&amp;gt; FIREWALL OUTSIDE (G0/1 -BVI1) &amp;lt;-----&amp;gt; ROUTER INTERNET&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Ping tests:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Firewall (BVI1 - 192.168.100.3) - Switch (192.168.100.6) - OK&lt;/P&gt;
&lt;P&gt;Firewall - Router (192.168.100.1) - OK&lt;/P&gt;
&lt;P&gt;Firewall - Internet (8.8.8.8) - OK&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Switch &lt;SPAN&gt;(192.168.100.6)&amp;nbsp;&lt;/SPAN&gt;- Firewall &lt;SPAN&gt;(BVI1 - 192.168.100.3)&amp;nbsp;&lt;/SPAN&gt;- OK&lt;/P&gt;
&lt;P&gt;Switch &lt;SPAN&gt;(192.168.100.6)&amp;nbsp;&lt;/SPAN&gt;- Router &lt;SPAN&gt;(192.168.100.1)&amp;nbsp;&lt;/SPAN&gt;- Not Working&lt;/P&gt;
&lt;P&gt;Switch &lt;SPAN&gt;(192.168.100.6)&amp;nbsp;&lt;/SPAN&gt;- Internet (8.8.8.8) - Not working&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Router &lt;SPAN&gt;(192.168.100.1)&lt;/SPAN&gt;&amp;nbsp;- Firewall &lt;SPAN&gt;(BVI1 - 192.168.100.3)&amp;nbsp;&lt;/SPAN&gt;- OK&lt;/P&gt;
&lt;P&gt;Router &lt;SPAN&gt;(192.168.100.1)&amp;nbsp;&lt;/SPAN&gt;- Switch &lt;SPAN&gt;(192.168.100.6)&amp;nbsp;&lt;/SPAN&gt;- Not Working&lt;/P&gt;
&lt;P&gt;Router &lt;SPAN&gt;(192.168.100.1)&amp;nbsp;&lt;/SPAN&gt;- Internet (8.8.8.8) - OK&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Basically inside to outside is not working.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If I remove the firewall and plug the Router on the switch, everything works.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Am I missing something? Configuration is attached.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 07:51:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879065#M153259</guid>
      <dc:creator>Caue W</dc:creator>
      <dc:date>2019-03-12T07:51:08Z</dc:date>
    </item>
    <item>
      <title>Hi</title>
      <link>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879066#M153261</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;You have some acls thatbare not attached to your interfaces. If you have a look through asdm you will not see acls attached.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Try to do:&lt;/P&gt;
&lt;P&gt;access-group inside_access_in in interface inside&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Access-group outside_access_in in interface outside&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Afterwards let's do your ping from switch to router and let me know.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Sorry, check acl to be sure that names are correct because I'm with my mobile and not able to copy/paste.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Jun 2016 16:31:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879066#M153261</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2016-06-06T16:31:15Z</dc:date>
    </item>
    <item>
      <title>Hello Francesco, how are you?</title>
      <link>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879067#M153262</link>
      <description>&lt;P&gt;Hello Francesco, how are you?&lt;/P&gt;
&lt;P&gt;Thanks for the input!&lt;/P&gt;
&lt;P&gt;In fact, I tried to remove just to make sure it wasn´t blocking.&lt;/P&gt;
&lt;P&gt;Just configured the access-group back, it still the same, no access from switch to router.&lt;/P&gt;
&lt;P&gt;Those are the lines I´ve added (pretty much the same you sent to me):&lt;/P&gt;
&lt;P&gt;access-group outside_access_in in interface outside&lt;BR /&gt;access-group inside_access_in in interface inside&lt;/P&gt;
&lt;P&gt;Any ideas?&lt;/P&gt;
&lt;P&gt;Also, the&amp;nbsp;firewall is in the middle between switch and router, I´ve no topology, but Im assuming this is the way it should be, right?&lt;/P&gt;
&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Mon, 06 Jun 2016 17:12:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879067#M153262</guid>
      <dc:creator>Caue W</dc:creator>
      <dc:date>2016-06-06T17:12:29Z</dc:date>
    </item>
    <item>
      <title>Ok. I'm back on a laptop to</title>
      <link>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879068#M153263</link>
      <description>&lt;P&gt;Ok. I'm back on a laptop to have a better view of your config file. Both interfaces have the same security-level. I don't know if this is correct or not.&lt;/P&gt;
&lt;P&gt;If the outside security-level has not to be 100 but less then you need to activate the line of outside acl that's deactivated right now.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If security-level are set correctly, you need to add the command same-security-traffic permit inter-interface.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;It should works after this change.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Let me know&lt;/P&gt;</description>
      <pubDate>Mon, 06 Jun 2016 18:34:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879068#M153263</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2016-06-06T18:34:43Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879069#M153264</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Does the solution I gave you was fine?&lt;/P&gt;
&lt;P&gt;If your problem is solved don't forget to rate answers and mark it at correct answer.&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 08 Jun 2016 22:51:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-inside-lt-gt-outside-not-working/m-p/2879069#M153264</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2016-06-08T22:51:36Z</dc:date>
    </item>
  </channel>
</rss>

