<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic hi Cristian, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970956#M156798</link>
    <description>&lt;P&gt;hi Cristian,&lt;/P&gt;
&lt;P&gt;what if my DHCP is coming from the AD server? do i still need to setroute?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Philbert&lt;/P&gt;</description>
    <pubDate>Fri, 29 Jul 2016 03:06:46 GMT</pubDate>
    <dc:creator>philbert_manalo</dc:creator>
    <dc:date>2016-07-29T03:06:46Z</dc:date>
    <item>
      <title>Routing Vlans on ASA</title>
      <link>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970953#M156751</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I want all my vlans access to the internet, unfortunately it failed. as i see i am having problem with my routing on the &amp;nbsp;asa. what is the right command that i will use. my static route is &lt;EM&gt;&lt;STRONG&gt;"outside.any.any.public ip"&lt;/STRONG&gt;&lt;/EM&gt;. thank you!&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Philbert&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:03:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970953#M156751</guid>
      <dc:creator>philbert_manalo</dc:creator>
      <dc:date>2019-03-12T08:03:42Z</dc:date>
    </item>
    <item>
      <title>hi,</title>
      <link>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970954#M156769</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;
&lt;P&gt;are you referring to static default route on the ASA?&lt;/P&gt;
&lt;P&gt;the commands should be:&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;route outside 0.0.0.0 0.0.0.0 &amp;lt;ISP GW IP&amp;gt;&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;or the shorthand command:&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;route outside 0 0 &amp;lt;ISP GW IP&amp;gt;&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 26 Jul 2016 01:52:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970954#M156769</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2016-07-26T01:52:01Z</dc:date>
    </item>
    <item>
      <title>And if DHCP dont forget the</title>
      <link>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970955#M156781</link>
      <description>&lt;P&gt;And if DHCP dont forget the "set route"&lt;/P&gt;
&lt;PRE class="prettyprint"&gt;interface Vlan20&lt;BR /&gt; nameif OUTSIDE&lt;BR /&gt; security-level 0&lt;BR /&gt; ip address dhcp setroute&lt;/PRE&gt;
&lt;P&gt;//Cristian&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jul 2016 11:32:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970955#M156781</guid>
      <dc:creator>Cristian Nilsson</dc:creator>
      <dc:date>2016-07-28T11:32:17Z</dc:date>
    </item>
    <item>
      <title>hi Cristian,</title>
      <link>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970956#M156798</link>
      <description>&lt;P&gt;hi Cristian,&lt;/P&gt;
&lt;P&gt;what if my DHCP is coming from the AD server? do i still need to setroute?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Philbert&lt;/P&gt;</description>
      <pubDate>Fri, 29 Jul 2016 03:06:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970956#M156798</guid>
      <dc:creator>philbert_manalo</dc:creator>
      <dc:date>2016-07-29T03:06:46Z</dc:date>
    </item>
    <item>
      <title>hi Johnlloyd,</title>
      <link>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970957#M156812</link>
      <description>&lt;P&gt;hi Johnlloyd,&lt;/P&gt;
&lt;P&gt;what if i have vlans?an they get their IP on the AD server&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Philbert&lt;/P&gt;</description>
      <pubDate>Fri, 29 Jul 2016 03:08:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970957#M156812</guid>
      <dc:creator>philbert_manalo</dc:creator>
      <dc:date>2016-07-29T03:08:20Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970958#M156822</link>
      <description>Hi,

can you please send the configuration to check? 
basically, you should add default route to outside interface. and then, create a policy to enable traffic between those interfaces with ACL.

Regards</description>
      <pubDate>Fri, 29 Jul 2016 06:23:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970958#M156822</guid>
      <dc:creator>Kasun Bandara</dc:creator>
      <dc:date>2016-07-29T06:23:27Z</dc:date>
    </item>
    <item>
      <title>The set-route command should</title>
      <link>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970959#M156834</link>
      <description>&lt;P&gt;The set-route command should be applied on your OUTSIDE interface connected to ISP, but only if you get IP by DHCP from ISP.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If you have a static IP assigned to OUTSIDE interface you should use the command&amp;nbsp;route OUTSIDE 0 0 x.x.x.x instead, where x.x.x.x is your IPS gateway.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Cristian&lt;/P&gt;</description>
      <pubDate>Fri, 29 Jul 2016 23:05:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970959#M156834</guid>
      <dc:creator>Cristian Nilsson</dc:creator>
      <dc:date>2016-07-29T23:05:57Z</dc:date>
    </item>
    <item>
      <title>Hi;</title>
      <link>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970960#M156840</link>
      <description>&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;Hi;&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;As I understand that you have multiple Vlan configure on your firewall and you want all vlan should get access to internet. To access the internet you need to do 2 things:&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI style="margin-bottom: .0001pt; text-indent: -.25in; line-height: normal;"&gt;&lt;SPAN style="font: 7.0pt 'Times New Roman';"&gt; &lt;/SPAN&gt;Configure default gateway: (which you already configured)&lt;/LI&gt;
&lt;/UL&gt;
&lt;P style="line-height: normal; margin: 0in 0in .0001pt .25in;"&gt;route outside 0 0 &amp;lt;ISP GW IP&amp;gt;&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI style="margin-bottom: .0001pt; text-indent: -.25in; line-height: normal;"&gt;&lt;SPAN style="font: 7.0pt 'Times New Roman';"&gt; &lt;/SPAN&gt;Configure the NAT for all the vlan, those you want to access the internet (i.e I took 2 vlan 10 &amp;amp; 20)&lt;/LI&gt;
&lt;/UL&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;interface GigabitEthernet0/1.10&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;vlan 10&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;nameif Inside_vlan10&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;security-level 100&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;ip address 192.168.10.1 255.255.255.0&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;interface GigabitEthernet0/1.20&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;vlan 20&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;nameif Inside_vlan20&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;security-level 100&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; text-indent: .25in; line-height: normal;"&gt;ip address 192.168.20.1 255.255.255.0&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network net-192.168.10&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 192.168.10.0 255.255.255.0&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;nat (Inside_vlan10,Outside) dynamic interface&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network net-192.168.20&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 192.168.20.0 255.255.255.0&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;nat (Inside_vlan20,Outside) dynamic interface&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;Thanks &amp;amp; Best regards;&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 30 Jul 2016 10:44:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/routing-vlans-on-asa/m-p/2970960#M156840</guid>
      <dc:creator>ahmedshoaib</dc:creator>
      <dc:date>2016-07-30T10:44:03Z</dc:date>
    </item>
  </channel>
</rss>

