<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915027#M153910</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Packet tracer output is in place.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Can you check the show arp on the ASA ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Also on the PC on the inside 2 interface what are you pinging ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Can you check your IP settings and make sure the default gateway is set to inside 2 interface IP of ASA and DNS as and global DNS server ( 8.8.8.8 ) ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Aditya&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Please rate helpful posts and mark correct answers.&lt;/P&gt;</description>
    <pubDate>Thu, 12 May 2016 17:13:56 GMT</pubDate>
    <dc:creator>Aditya Ganjoo</dc:creator>
    <dc:date>2016-05-12T17:13:56Z</dc:date>
    <item>
      <title>Multiple Inside interfaces with one outside interface</title>
      <link>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915022#M153905</link>
      <description>&lt;P&gt;I have an ASA 5520 and trying to use 2 of the interfaces for inside traffic and using just one internet connection:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;For Example..&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;GigabitEthernet 0/0 - Outside (internet)&lt;/P&gt;
&lt;P&gt;GigabitEthernet 0/1 - Inside (192.168.1.0)&lt;/P&gt;
&lt;P&gt;GigabitEthernet 0/2 - Inside2 (192.168.2.0)&lt;/P&gt;
&lt;P&gt;I have NAT and access rules setup correctly I believe but if I get on the .2 network I can not access the internet.&amp;nbsp; Packet tracer shows if I pick interface 0/2 as source and internet as destination the packet goes through, if I use traceroute with same parameters it will not resolve.&amp;nbsp; Is this possible with just an ASA or will I need to integrate a router?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 07:44:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915022#M153905</guid>
      <dc:creator>Erick Brittain</dc:creator>
      <dc:date>2019-03-12T07:44:47Z</dc:date>
    </item>
    <item>
      <title>packet-tracer can fool you</title>
      <link>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915023#M153906</link>
      <description>&lt;P&gt;packet-tracer can fool you here. It's not enough that it tells you that the packet goes through, it also has to show you that the right translation is used.&lt;/P&gt;
&lt;P&gt;I would assume that something is wrong with your NAT here. Can you share your complete NAT config?&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2016 15:46:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915023#M153906</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2016-05-12T15:46:37Z</dc:date>
    </item>
    <item>
      <title>Manual NAT Policies (Section</title>
      <link>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915024#M153907</link>
      <description>&lt;P&gt;Manual NAT Policies (Section 1)&lt;BR /&gt;1 (inside) to (inside) source dynamic any interface&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;2 (inside2) to (inside2) source dynamic any interface&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;This section is working, it is for remote RDP and is working:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Auto NAT Policies (Section 2)&lt;BR /&gt;1 (inside) to (outside) source static RDP_Static interface&amp;nbsp;&amp;nbsp; service tcp 3389 3389&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 0, untranslate_hits = 81&lt;BR /&gt;2 (inside) to (outside) source dynamic obj-192.168.1.0 interface&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 4151687, untranslate_hits = 2542688&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2016 16:28:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915024#M153907</guid>
      <dc:creator>Erick Brittain</dc:creator>
      <dc:date>2016-05-12T16:28:46Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915025#M153908</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Please share the packet tracer output.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Aditya&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Please rate helpful posts and mark correct answers.&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2016 16:48:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915025#M153908</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2016-05-12T16:48:09Z</dc:date>
    </item>
    <item>
      <title>packet-tracer input inside2</title>
      <link>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915026#M153909</link>
      <description>&lt;P&gt;packet-tracer input inside2 tcp 192.168.2.13 80 4.2.2.2 80&lt;/P&gt;
&lt;P&gt;Phase: 1&lt;BR /&gt;Type: ACCESS-LIST&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Implicit Rule&lt;BR /&gt;Additional Information:&lt;BR /&gt;MAC Access list&lt;/P&gt;
&lt;P&gt;Phase: 2&lt;BR /&gt;Type: ROUTE-LOOKUP&lt;BR /&gt;Subtype: input&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;BR /&gt;in 0.0.0.0 0.0.0.0 outside&lt;/P&gt;
&lt;P&gt;Phase: 3&lt;BR /&gt;Type: ACCESS-LIST&lt;BR /&gt;Subtype: log&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;access-group Inside2_access_in in interface inside2&lt;BR /&gt;access-list Inside2_access_in extended permit ip any4 any4&lt;BR /&gt;Additional Information:&lt;/P&gt;
&lt;P&gt;Phase: 4&lt;BR /&gt;Type: NAT&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;object network Inside_2&lt;BR /&gt; nat (any,outside) dynamic interface&lt;BR /&gt;Additional Information:&lt;BR /&gt;Dynamic translate 192.168.2.13/80 to (InternetIP address)/80&lt;/P&gt;
&lt;P&gt;Phase: 5&lt;BR /&gt;Type: NAT&lt;BR /&gt;Subtype: per-session&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;/P&gt;
&lt;P&gt;Phase: 6&lt;BR /&gt;Type: IP-OPTIONS&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;/P&gt;
&lt;P&gt;Phase: 7&lt;BR /&gt;Type: NAT&lt;BR /&gt;Subtype: per-session&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;/P&gt;
&lt;P&gt;Phase: 8&lt;BR /&gt;Type: IP-OPTIONS&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;/P&gt;
&lt;P&gt;Phase: 9&lt;BR /&gt;Type: FLOW-CREATION&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;BR /&gt;New flow created with id 7866831, packet dispatched to next module&lt;/P&gt;
&lt;P&gt;Result:&lt;BR /&gt;input-interface: inside2&lt;BR /&gt;input-status: up&lt;BR /&gt;input-line-status: up&lt;BR /&gt;output-interface: outside&lt;BR /&gt;output-status: up&lt;BR /&gt;output-line-status: up&lt;BR /&gt;Action: allow&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2016 17:03:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915026#M153909</guid>
      <dc:creator>Erick Brittain</dc:creator>
      <dc:date>2016-05-12T17:03:11Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915027#M153910</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Packet tracer output is in place.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Can you check the show arp on the ASA ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Also on the PC on the inside 2 interface what are you pinging ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Can you check your IP settings and make sure the default gateway is set to inside 2 interface IP of ASA and DNS as and global DNS server ( 8.8.8.8 ) ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Aditya&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Please rate helpful posts and mark correct answers.&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2016 17:13:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915027#M153910</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2016-05-12T17:13:56Z</dc:date>
    </item>
    <item>
      <title>I was trying to ping out from</title>
      <link>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915028#M153911</link>
      <description>&lt;P&gt;I was trying to ping out from a pc on the inside2 network (.2), it has an ip of 192.168.2.13 and going to external address on packet tracer appears to work.&amp;nbsp; If i do a traceroute from the inside2 interface to an internet address it will not go out.&amp;nbsp; i will check the PC settings in a little bit, i currently don't have access to it.&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2016 17:44:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915028#M153911</guid>
      <dc:creator>Erick Brittain</dc:creator>
      <dc:date>2016-05-12T17:44:06Z</dc:date>
    </item>
    <item>
      <title>Well not sure what to say but</title>
      <link>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915029#M153912</link>
      <description>Well not sure what to say but checking from the pc internet is working.  I am not sure why the traceroute fails but it all appears to be fine.  I really appreciate all the help.</description>
      <pubDate>Thu, 12 May 2016 19:17:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multiple-inside-interfaces-with-one-outside-interface/m-p/2915029#M153912</guid>
      <dc:creator>Erick Brittain</dc:creator>
      <dc:date>2016-05-12T19:17:07Z</dc:date>
    </item>
  </channel>
</rss>

