<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi,What if you configure the in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750618#M179185</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;What if you configure the Switch Int Vkan 3 as the Trunk interface and the ASA interface as well on the ASA device ?&lt;/P&gt;&lt;P&gt;Also , the alternative way would be to use the 3560 as the Layer 2 Device and create sub interfaces on the ASA device for the Later 3 routing.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
    <pubDate>Sat, 12 Sep 2015 19:17:42 GMT</pubDate>
    <dc:creator>Vibhor Amrodia</dc:creator>
    <dc:date>2015-09-12T19:17:42Z</dc:date>
    <item>
      <title>Cannot connet to the internet through 5505 ASA</title>
      <link>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750617#M179174</link>
      <description>&lt;P&gt;Hi guys, I have a problem that I've been trying to fix without any luck so I decided to reach out to you and get some of your help. I'm setting up a simple security lab at home and here's the setup:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Computer(in vlan10)-----&amp;gt;Gi0/2(access port in vlan10&amp;nbsp;3560 switch)&lt;/P&gt;&lt;P&gt;Gi0/1(Access port in vlan 3 on 3560)------&amp;gt;eth0/1(5505 ASA assigned to vlan 2 inside)&lt;/P&gt;&lt;P&gt;then&amp;nbsp;&lt;/P&gt;&lt;P&gt;eth0/0(5505 assignet to vlan 1 outside)------&amp;gt;Modem&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here's the config:&amp;nbsp;&lt;/P&gt;&lt;P&gt;3560 switches is the DG for vlan 10&amp;nbsp;&lt;/P&gt;&lt;P&gt;I also have vlan 3 a Layer 3 vlan for transport between the 3560 and the ASA&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;on 3560&amp;nbsp;&lt;/P&gt;&lt;P&gt;inter vlan 10&amp;nbsp;&lt;/P&gt;&lt;P&gt;ip add 192.168.10.1 255.255.255.0&amp;nbsp;&lt;/P&gt;&lt;P&gt;inter vlan 3 10.2.2.1 255.255.255.0&amp;nbsp;&lt;/P&gt;&lt;P&gt;ip route 0.0.0.0 0.0.0.0 10.2.2.2&amp;nbsp;&lt;/P&gt;&lt;P&gt;on ASA&amp;nbsp;&lt;/P&gt;&lt;P&gt;inter vlan 2&amp;nbsp;&lt;/P&gt;&lt;P&gt;nameif inside&lt;/P&gt;&lt;P&gt;sec-level 100&amp;nbsp;&lt;/P&gt;&lt;P&gt;ip add 10.2.2.2 255.255.255.0&lt;/P&gt;&lt;P&gt;inter eth0/1&lt;/P&gt;&lt;P&gt;switchport access vlan 2&lt;/P&gt;&lt;P&gt;******************************************&lt;/P&gt;&lt;P&gt;inter vlan 1&amp;nbsp;&lt;/P&gt;&lt;P&gt;nameif outside&amp;nbsp;&lt;/P&gt;&lt;P&gt;sec-level 0&amp;nbsp;&lt;/P&gt;&lt;P&gt;ip address dhcp(this interface actualy gets an IP from the modem and I can ping 4.2.2.2 from the ASA)&amp;nbsp;&lt;/P&gt;&lt;P&gt;inter eth0/0&amp;nbsp;&lt;/P&gt;&lt;P&gt;switchport access vlan 1&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;*******************************************&lt;/P&gt;&lt;P&gt;route inside 192.168.10.0 255.255.255.0 10.2.2.1&amp;nbsp;&lt;/P&gt;&lt;P&gt;route outside 0 0 10.0.0.1(modem)&lt;/P&gt;&lt;P&gt;That's it. My computer is able to ping its gateway on the 3560. the 3560 is able to ping the ASA on its inside vlan interface but PC isn't able to ping nor pass through the ASA.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Note:ASA has a base security license so I could do trunking and subinterfaces.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:35:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750617#M179174</guid>
      <dc:creator>NETAD</dc:creator>
      <dc:date>2019-03-12T06:35:07Z</dc:date>
    </item>
    <item>
      <title>Hi,What if you configure the</title>
      <link>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750618#M179185</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;What if you configure the Switch Int Vkan 3 as the Trunk interface and the ASA interface as well on the ASA device ?&lt;/P&gt;&lt;P&gt;Also , the alternative way would be to use the 3560 as the Layer 2 Device and create sub interfaces on the ASA device for the Later 3 routing.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Sat, 12 Sep 2015 19:17:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750618#M179185</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-09-12T19:17:42Z</dc:date>
    </item>
    <item>
      <title>Thanks for the reply Vibhor.</title>
      <link>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750619#M179223</link>
      <description>&lt;P&gt;Thanks for the reply Vibhor. The thing is that I dont have the sec plus license so no trunking nor sub interfaces are allowed.&lt;/P&gt;</description>
      <pubDate>Sun, 13 Sep 2015 07:04:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750619#M179223</guid>
      <dc:creator>NETAD</dc:creator>
      <dc:date>2015-09-13T07:04:39Z</dc:date>
    </item>
    <item>
      <title>Hi Sleiman,Have you</title>
      <link>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750620#M179243</link>
      <description>&lt;P&gt;Hi Sleiman,&lt;/P&gt;&lt;P&gt;Have you configured ICMP inspection and explictly allowed it on the ASA?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is the ASA performing NAT, or is that taking place on the modem?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;cheers,&lt;/P&gt;&lt;P&gt;Seb.&lt;/P&gt;</description>
      <pubDate>Sun, 13 Sep 2015 09:08:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750620#M179243</guid>
      <dc:creator>Seb Rupik</dc:creator>
      <dc:date>2015-09-13T09:08:46Z</dc:date>
    </item>
    <item>
      <title>The modem will be doing  The</title>
      <link>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750621#M179266</link>
      <description>&lt;P&gt;The modem will be doing &amp;nbsp;The natting but the asa will also nat to the private ip space if the modem. I got this working by configuring ospf between the switch and the asa and pushing a default route via ospf from the asa to the l3 switch. I dont know why the mentioned setup didnt work.&lt;/P&gt;</description>
      <pubDate>Mon, 14 Sep 2015 02:17:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-connet-to-the-internet-through-5505-asa/m-p/2750621#M179266</guid>
      <dc:creator>NETAD</dc:creator>
      <dc:date>2015-09-14T02:17:19Z</dc:date>
    </item>
  </channel>
</rss>

