<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Migrating ASA 5505 to 5506-X in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734304#M171271</link>
    <description>&lt;P&gt;Hi I am finding trouble migrating 5505 to 5506-X.&lt;/P&gt;&lt;P&gt;I have pasted the config that I have changed.&lt;/P&gt;&lt;P&gt;The only statement that doesn't go thru is :&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 27.X.X.X8 1&lt;/P&gt;&lt;P&gt;old config: ASA 8.4.2&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;BR /&gt;&amp;nbsp;switchport access vlan 2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/3&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/4&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/5&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/6&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/7&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.10.10.2 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan2&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 27.X.X.X8 255.255.255.240&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 27.X.X.X8 1&lt;/P&gt;&lt;P&gt;New Config: ASA 9.5.1&lt;/P&gt;&lt;P&gt;interface GigabitEthernet1/1&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.X.X.X 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/2&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 27.X.X.X8 255.255.255.240&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 06:47:16 GMT</pubDate>
    <dc:creator>Abhradeep.Banerjee</dc:creator>
    <dc:date>2019-03-12T06:47:16Z</dc:date>
    <item>
      <title>Migrating ASA 5505 to 5506-X</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734304#M171271</link>
      <description>&lt;P&gt;Hi I am finding trouble migrating 5505 to 5506-X.&lt;/P&gt;&lt;P&gt;I have pasted the config that I have changed.&lt;/P&gt;&lt;P&gt;The only statement that doesn't go thru is :&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 27.X.X.X8 1&lt;/P&gt;&lt;P&gt;old config: ASA 8.4.2&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;BR /&gt;&amp;nbsp;switchport access vlan 2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/3&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/4&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/5&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/6&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/7&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.10.10.2 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan2&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 27.X.X.X8 255.255.255.240&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 27.X.X.X8 1&lt;/P&gt;&lt;P&gt;New Config: ASA 9.5.1&lt;/P&gt;&lt;P&gt;interface GigabitEthernet1/1&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.X.X.X 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/2&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 27.X.X.X8 255.255.255.240&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:47:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734304#M171271</guid>
      <dc:creator>Abhradeep.Banerjee</dc:creator>
      <dc:date>2019-03-12T06:47:16Z</dc:date>
    </item>
    <item>
      <title>Hi Abhradeep, What is the</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734305#M171272</link>
      <description>&lt;P&gt;Hi Abhradeep,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is the error that you get while applying the route configuration on 5506.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can check if there is some interface configured to get IP dynamically with setroute keyword, this would result in installation of default route.&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can check show route output and check if there is any default route present. In case you see it, you can remove the route the static route, if it is manually configured or you can remove the setroute keyword from interface, if the route is dynamically learnt.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Share your findings.&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;R.Seth&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Oct 2015 13:10:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734305#M171272</guid>
      <dc:creator>Rishabh Seth</dc:creator>
      <dc:date>2015-10-23T13:10:50Z</dc:date>
    </item>
    <item>
      <title>think ill recreate the</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734306#M171273</link>
      <description>&lt;P&gt;think ill recreate the problem on GNS3. its something like ip address already being used.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can check if there is some interface configured to get IP dynamically with setroute keyword, this would result in installation of default route. (this hasnt been set)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Oct 2015 14:20:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734306#M171273</guid>
      <dc:creator>Abhradeep.Banerjee</dc:creator>
      <dc:date>2015-10-23T14:20:59Z</dc:date>
    </item>
    <item>
      <title>HI, The command should work</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734307#M171274</link>
      <description>&lt;P&gt;HI,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The command should work without any issues until and unless:&lt;/P&gt;&lt;P&gt;++You have a setroute on any other interface&lt;/P&gt;&lt;P&gt;++Also I see outside interface has ip : &lt;STRONG&gt;27.X.X.X8&lt;/STRONG&gt; 255.255.255.240 and the route that you are configuring is route outside 0.0.0.0 0.0.0.0 &lt;STRONG&gt;27.X.X.X8&lt;/STRONG&gt; 1 , make sure it is the next hop and not the outside interface itself.&lt;/P&gt;&lt;P&gt;++Run a "show route" and check if you have any other default route with same metric.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Aastha&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;Rate if that helps!!!&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Oct 2015 17:04:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734307#M171274</guid>
      <dc:creator>Aastha Bhardwaj</dc:creator>
      <dc:date>2015-10-23T17:04:51Z</dc:date>
    </item>
    <item>
      <title>Hi the route outside was set</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734308#M171275</link>
      <description>&lt;P&gt;Hi the route outside was set previously, on the ASA 5505. It was was working perfectly,&lt;/P&gt;&lt;P&gt;I pasted in the 8.4.2(GNS3) no issue. But didn't work on 9.5.1 actual hardware.&lt;/P&gt;&lt;P&gt;The ASA 5505 : running on 8.4.2&lt;/P&gt;&lt;P&gt;5506-X Running on 9.5.1 image&lt;/P&gt;&lt;P&gt;I transferred config(by importing to the new firewall) only change i made was to put on the gE interface instead of VLAN.&lt;/P&gt;&lt;P&gt;There was no set route set into any other interface. As the old config didn't have any such configuration.&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Abhradeep&lt;/P&gt;</description>
      <pubDate>Sat, 24 Oct 2015 11:52:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734308#M171275</guid>
      <dc:creator>Abhradeep.Banerjee</dc:creator>
      <dc:date>2015-10-24T11:52:48Z</dc:date>
    </item>
    <item>
      <title>hi,</title>
      <link>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734309#M171276</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;
&lt;P&gt;Managed to solve the problem i just used another IP address from the given range from the ISP.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Abhradeep&lt;/P&gt;</description>
      <pubDate>Wed, 11 Nov 2015 03:17:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/migrating-asa-5505-to-5506-x/m-p/2734309#M171276</guid>
      <dc:creator>Abhradeep.Banerjee</dc:creator>
      <dc:date>2015-11-11T03:17:27Z</dc:date>
    </item>
  </channel>
</rss>

