<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi Jon,Here are the interface in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712106#M191154</link>
    <description>&lt;P&gt;Hi Jon,&lt;/P&gt;&lt;P&gt;Here are the interface configs:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet1/0/2&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;description Router interface&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport access vlan 29&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport trunk encapsulation dot1q&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport mode trunk&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport nonegotiate&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;spanning-tree portfast trunk&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet1/0/13&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;description ASA outside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport trunk encapsulation dot1q&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport mode trunk&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;speed 1000&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;duplex full&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;spanning-tree portfast&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet1/0/14&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;description ASA inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport access vlan 45&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport mode access&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;speed 1000&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;duplex full&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;spanning-tree portfast&lt;/P&gt;</description>
    <pubDate>Wed, 27 May 2015 16:40:35 GMT</pubDate>
    <dc:creator>kc1978</dc:creator>
    <dc:date>2015-05-27T16:40:35Z</dc:date>
    <item>
      <title>Unable to ping router's interface from ASA</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712103#M191151</link>
      <description>&lt;P style="margin-bottom: 0px; line-height: normal; font-family: Arial; color: rgb(50, 51, 51);"&gt;I have an ASA that is situated behind a cisco router and I'm unable to ping the router's interface that is on the same subnet as the outside interface of the ASA. I can ping the router's interface from the same switch that the ASA is connected. Wireshark on the router's switchport shows&amp;nbsp;arp query but no reply from either the router or the ASA.&amp;nbsp;Here is the config of the ASA and the router. &amp;nbsp;Just want to see if someone could help in letting me know what I'm missing. &amp;nbsp;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ASA Version 9.3(1)&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;hostname guinep1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;domain-name&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;enable password encrypted&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;names&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;speed 1000&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;duplex full&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;nameif outside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;security-level 0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip address 192.168.29.4 255.255.255.240&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;nameif inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;security-level 100&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip address 192.168.45.196 255.255.255.0&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/2&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;shutdown&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no nameif&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;security-level 0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/3&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;shutdown&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no nameif&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no security-level&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/4&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;shutdown&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no nameif&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no security-level&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/5&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;shutdown&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no nameif&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no security-level&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/6&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;shutdown&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no nameif&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no security-level&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/7&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;shutdown&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no nameif&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no security-level&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/8&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;shutdown&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no nameif&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no security-level&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface Management0/0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;management-only&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;shutdown&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;nameif management&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;security-level 100&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ftp mode passive&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;clock timezone EST -5&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;clock summer-time EDT recurring&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;dns server-group DefaultDNS&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;domain-name&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;same-security-traffic permit inter-interface&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;same-security-traffic permit intra-interface&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;object network inside-net&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;subnet 192.168.45.0 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;object network obj-192.168.45.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;subnet 192.168.45.0 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;object-group network obj-inside-net&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;description Inside Networks&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;network-object 192.168.20.0 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;network-object 192.168.25.0 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;network-object 192.168.35.0 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;network-object 192.168.37.0 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;network-object 192.168.45.0 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;pager lines 23&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;logging enable&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;logging asdm informational&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;mtu outside 1500&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;mtu inside 1500&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;mtu management 1500&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;no failover&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;icmp permit 192.168.29.0 255.255.255.240 outside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;asdm image disk0:/asdm-742.bin&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;no asdm history enable&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;arp timeout 14400&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;no arp permit-nonconnected&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;route outside 0.0.0.0 0.0.0.0 192.168.29.1 1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;route inside 192.168.20.0 255.255.255.0 192.168.45.1 1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;route inside 192.168.25.0 255.255.255.0 192.168.45.1 1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;route inside 192.168.37.0 255.255.255.0 192.168.45.1 1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;timeout pat-xlate 0:00:30&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;timeout tcp-proxy-reassembly 0:01:00&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;timeout floating-conn 0:00:00&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;user-identity default-domain LOCAL&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;http server enable&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;http 192.168.20.0 255.255.255.0 inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;http 192.168.25.0 255.255.255.0 inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;http 192.168.37.0 255.255.255.0 inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;no snmp-server location&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;no snmp-server contact&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;crypto ipsec security-association pmtu-aging infinite&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;crypto ca trustpool policy&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;telnet timeout 5&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;no ssh stricthostkeycheck&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ssh timeout 5&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ssh key-exchange group dh-group1-sha1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;console timeout 0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;threat-detection basic-threat&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;threat-detection statistics access-list&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;no threat-detection statistics tcp-intercept&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;username password&amp;nbsp; encrypted privilege 15&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;class-map class_default&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;class-map inspection_default&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;match default-inspection-traffic&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;policy-map type inspect dns preset_dns_map&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;parameters&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; message-length maximum client auto&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; message-length maximum 512&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;policy-map global_policy&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;class inspection_default&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect rtsp&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect sunrpc&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect xdmcp&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect netbios&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect tftp&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect ip-options&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect icmp&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect icmp error&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect dns preset_dns_map&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect ftp&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect h323 h225&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect h323 ras&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect rsh&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect esmtp&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect sqlnet&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect sip &amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; inspect skinny &amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;class class-default&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp; set connection decrement-ttl&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;service-policy global_policy global&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;prompt hostname context&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;no call-home reporting anonymous&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;Cryptochecksum:05f2fcabf2b29546da648900fbcc1cca&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;: end&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ROUTER&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;router#sh run&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;Building configuration...&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;Current configuration : 6030 bytes&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;! Last configuration change at 10:49:25 EDT Wed May 27 2015 by&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;version 15.1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;service timestamps debug datetime msec&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;service timestamps log datetime msec&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;service password-encryption&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;hostname router&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;boot-start-marker&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;boot system flash:c3825-adventerprisek9-mz.151-4.M9.bin&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;description $FW_OUTSIDE$$ETH-WAN$&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip dhcp relay information trusted&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip address dhcp client-id GigabitEthernet0/0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip redirects&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip unreachables&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip proxy-arp&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip nat outside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip virtual-reassembly in&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;duplex auto&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;speed auto&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;media-type rj45&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no cdp enable&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;description $ETH-LAN$$FW_INSIDE$&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip unreachables&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip proxy-arp&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;duplex full&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;speed 1000&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;media-type rj45&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no mop enabled&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet0/1.29&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;encapsulation dot1Q 29&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip address 192.168.29.1 255.255.255.240&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip nat inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip virtual-reassembly in&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface FastEthernet1/0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;duplex full&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;speed auto&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface FastEthernet1/0.35&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;encapsulation dot1Q 35&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip address 192.168.35.1 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip nat inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip virtual-reassembly in&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface FastEthernet1/0.37&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;encapsulation dot1Q 37&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip address 192.168.37.16 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip nat inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip virtual-reassembly in&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface FastEthernet1/0.45&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;encapsulation dot1Q 45&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip address 192.168.45.1 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip nat inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;ip virtual-reassembly in&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface FastEthernet1/1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;no ip address&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;shutdown&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;duplex auto&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;speed auto&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;router eigrp 37&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;network 192.168.0.0 0.0.255.255&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;passive-interface GigabitEthernet0/0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ip forward-protocol nd&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ip http server&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ip http authentication local&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ip http secure-server&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ip nat inside source list 1 interface GigabitEthernet0/0 overload&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ip nat inside source static udp 192.168.29.4 500 interface GigabitEthernet0/0 500&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ip nat inside source static udp 192.168.29.4 4500 interface GigabitEthernet0/0 4500&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;ip nat inside source static esp 192.168.29.4 interface GigabitEthernet0/0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;logging trap notifications&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;logging facility local6&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;logging 192.168.37.185&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 1 permit 192.168.29.0 0.0.0.15&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 1 permit 192.168.20.0 0.0.0.255&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 1 permit 192.168.25.0 0.0.0.255&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 1 permit 192.168.35.0 0.0.0.255&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 1 permit 192.168.37.0 0.0.0.255&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 1 permit 192.168.45.0 0.0.0.255&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 1 remark SDM_ACL Category=2&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 111 permit icmp host 192.168.29.1 host 192.168.29.5&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 111 permit icmp host 192.168.29.1 host 192.168.29.4&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;access-list 111 permit icmp host 192.168.35.12 host 192.168.29.1&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;!&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;router#&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:00:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712103#M191151</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2019-03-12T06:00:34Z</dc:date>
    </item>
    <item>
      <title>So the port on the switch</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712104#M191152</link>
      <description>&lt;P&gt;So the port on the switch connected to the router is configured as a trunk ?&lt;/P&gt;&lt;P&gt;And the port the firewall connects to on the switch is in vlan 29 ?&lt;/P&gt;&lt;P&gt;And the native vlan on the trunk is not vlan 29 ?&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 15:55:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712104#M191152</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-05-27T15:55:08Z</dc:date>
    </item>
    <item>
      <title>Hi Jon, So the port on the</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712105#M191153</link>
      <description>&lt;P&gt;Hi Jon,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So the port on the switch connected to the router is configured as a trunk ? &amp;nbsp; ---- Yes&lt;/P&gt;&lt;P&gt;And the port the firewall connects to on the switch is in vlan 29 ? &amp;nbsp; ---- This is a trunk port&lt;/P&gt;&lt;P&gt;And the native vlan on the trunk is not vlan 29 ? &amp;nbsp; Native vlan 29 is not configured on the ports&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 16:36:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712105#M191153</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-27T16:36:30Z</dc:date>
    </item>
    <item>
      <title>Hi Jon,Here are the interface</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712106#M191154</link>
      <description>&lt;P&gt;Hi Jon,&lt;/P&gt;&lt;P&gt;Here are the interface configs:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet1/0/2&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;description Router interface&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport access vlan 29&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport trunk encapsulation dot1q&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport mode trunk&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport nonegotiate&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;spanning-tree portfast trunk&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet1/0/13&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;description ASA outside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport trunk encapsulation dot1q&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport mode trunk&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;speed 1000&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;duplex full&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;spanning-tree portfast&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo; min-height: 13px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;interface GigabitEthernet1/0/14&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;description ASA inside&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport access vlan 45&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;switchport mode access&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;speed 1000&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;duplex full&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;&amp;nbsp;spanning-tree portfast&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 16:40:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712106#M191154</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-27T16:40:35Z</dc:date>
    </item>
    <item>
      <title>Your connection to the ASA</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712107#M191155</link>
      <description>&lt;P&gt;Your connection to the ASA outside interface is configured as a trunk&amp;nbsp;but your ASA is not using subinterfaces.&lt;/P&gt;&lt;P&gt;The ASA will not be sending tagged packets to the switch.&lt;/P&gt;&lt;P&gt;Can you -&lt;/P&gt;&lt;P&gt;1) on the switch router port remove "switchport access vlan 29" ie. it is either an access port or a trunk port, not both, and it is meant to be a trunk port.&lt;/P&gt;&lt;P&gt;It should work as is but it is better to only have the configuration you need in there.&lt;/P&gt;&lt;P&gt;2) on the switch ASA port change it from a trunk to an access port ie. -&lt;/P&gt;&lt;P&gt;switchport mode access&lt;BR /&gt;switchport access vlan 29&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 17:34:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712107#M191155</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-05-27T17:34:44Z</dc:date>
    </item>
    <item>
      <title>Hi Jon,I made the changes but</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712108#M191156</link>
      <description>&lt;P&gt;Hi Jon,&lt;/P&gt;&lt;P&gt;I made the changes but I'm still having the same issue:&lt;/P&gt;&lt;P&gt;Broadcast&amp;nbsp;&amp;nbsp; &amp;nbsp;ARP&amp;nbsp;&amp;nbsp; &amp;nbsp;60&amp;nbsp;&amp;nbsp; &amp;nbsp;Who has 192.168.29.4? &amp;nbsp;Tell 192.168.29.1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 17:36:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712108#M191156</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-27T17:36:49Z</dc:date>
    </item>
    <item>
      <title>Can you post a "sh int trunk"</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712109#M191157</link>
      <description>&lt;P&gt;Can you post a "sh int trunk" from the switch ?&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 17:39:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712109#M191157</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-05-27T17:39:59Z</dc:date>
    </item>
    <item>
      <title>Hi Jon,Here is the result of</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712110#M191158</link>
      <description>&lt;P&gt;Hi Jon,&lt;/P&gt;&lt;P&gt;Here is the result of the command:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Switch#sh int trunk&lt;/P&gt;&lt;P&gt;Port &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Mode &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Encapsulation &amp;nbsp;Status &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Native vlan&lt;BR /&gt;Gi1/0/1 &amp;nbsp; &amp;nbsp; on &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 802.1q &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; trunking &amp;nbsp; &amp;nbsp; &amp;nbsp;1&lt;BR /&gt;Gi1/0/2 &amp;nbsp; &amp;nbsp; on &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 802.1q &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; trunking &amp;nbsp; &amp;nbsp; &amp;nbsp;1&lt;BR /&gt;Gi1/0/10 &amp;nbsp; &amp;nbsp;on &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 802.1q &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; trunking &amp;nbsp; &amp;nbsp; &amp;nbsp;1&lt;BR /&gt;Gi1/0/11 &amp;nbsp; &amp;nbsp;on &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 802.1q &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; trunking &amp;nbsp; &amp;nbsp; &amp;nbsp;1&lt;BR /&gt;Gi1/0/15 &amp;nbsp; &amp;nbsp;on &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 802.1q &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; trunking &amp;nbsp; &amp;nbsp; &amp;nbsp;1&lt;BR /&gt;Gi1/0/26 &amp;nbsp; &amp;nbsp;on &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 802.1q &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; trunking &amp;nbsp; &amp;nbsp; &amp;nbsp;1&lt;BR /&gt;Gi1/0/28 &amp;nbsp; &amp;nbsp;on &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 802.1q &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; trunking &amp;nbsp; &amp;nbsp; &amp;nbsp;1&lt;/P&gt;&lt;P&gt;Port &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Vlans allowed on trunk&lt;BR /&gt;Gi1/0/1 &amp;nbsp; &amp;nbsp; 1-4094&lt;BR /&gt;Gi1/0/2 &amp;nbsp; &amp;nbsp; 1-4094&lt;BR /&gt;Gi1/0/10 &amp;nbsp; &amp;nbsp;1-4094&lt;BR /&gt;Gi1/0/11 &amp;nbsp; &amp;nbsp;20,25,29,37&lt;BR /&gt;Gi1/0/15 &amp;nbsp; &amp;nbsp;1-4094&lt;BR /&gt;Gi1/0/26 &amp;nbsp; &amp;nbsp;20,25,37&lt;BR /&gt;Gi1/0/28 &amp;nbsp; &amp;nbsp;1-4094&lt;/P&gt;&lt;P&gt;Port &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Vlans allowed and active in management domain&lt;BR /&gt;Gi1/0/1 &amp;nbsp; &amp;nbsp; 1,15,20,25,29-30,35,37,45&lt;BR /&gt;Gi1/0/2 &amp;nbsp; &amp;nbsp; 1,15,20,25,29-30,35,37,45&lt;BR /&gt;Gi1/0/10 &amp;nbsp; &amp;nbsp;1,15,20,25,29-30,35,37,45&lt;BR /&gt;Gi1/0/11 &amp;nbsp; &amp;nbsp;20,25,29,37&lt;BR /&gt;Gi1/0/15 &amp;nbsp; &amp;nbsp;1,15,20,25,29-30,35,37,45&lt;BR /&gt;Gi1/0/26 &amp;nbsp; &amp;nbsp;20,25,37&lt;BR /&gt;Gi1/0/28 &amp;nbsp; &amp;nbsp;1,15,20,25,29-30,35,37,45&lt;/P&gt;&lt;P&gt;Port &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Vlans in spanning tree forwarding state and not pruned&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;BR /&gt;Port &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Vlans in spanning tree forwarding state and not pruned&lt;BR /&gt;Gi1/0/1 &amp;nbsp; &amp;nbsp; 1,15,20,25,29-30,35,37,45&lt;BR /&gt;Gi1/0/2 &amp;nbsp; &amp;nbsp; 1,15,20,25,29-30,35,37,45&lt;BR /&gt;Gi1/0/10 &amp;nbsp; &amp;nbsp;1,15,20,25,29-30,35,37,45&lt;BR /&gt;Gi1/0/11 &amp;nbsp; &amp;nbsp;20,25,29,37&lt;BR /&gt;Gi1/0/15 &amp;nbsp; &amp;nbsp;1,15,20,25,29-30,35,37,45&lt;BR /&gt;Gi1/0/26 &amp;nbsp; &amp;nbsp;20,25,37&lt;BR /&gt;Gi1/0/28 &amp;nbsp; &amp;nbsp;1,15,20,25,29-30,35,37,45&lt;BR /&gt;Switch#&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 17:47:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712110#M191158</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-27T17:47:52Z</dc:date>
    </item>
    <item>
      <title>The switch configuration</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712111#M191159</link>
      <description>&lt;P&gt;The switch configuration looks okay from what I can see.&lt;/P&gt;&lt;P&gt;Are both interfaces ie. the ASA outside and the port on the switch it connects to in the up/up state ?&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 17:58:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712111#M191159</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-05-27T17:58:18Z</dc:date>
    </item>
    <item>
      <title>They are up/up state.This is</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712112#M191160</link>
      <description>&lt;P&gt;They are up/up state.&lt;/P&gt;&lt;P&gt;This is driving me crazy for a week because I don't see why there is an issue. &amp;nbsp;To make sure there is nothing wrong, I connected a laptop to the same port as the "outside" interface and configured it with a vlan 29 ip address and I was able to ping the interface of the router. I can also ping&amp;nbsp;it from the switch, so I'm a little confused. The other info that I get from the arp debug on the ASA is this:&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;arp-in: request at inside from 192.168.29.4 0050.56ac.aede for 192.168.29.1 0000.0000.0000 having smac 0050.56ac.aede dmac ffff.ffff.ffff&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;arp-in: Arp packet received from 192.168.29.4 which is in different subnet than the connected interface 192.168.45.196/255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: 0px; font-size: 11px; line-height: normal; font-family: Menlo;"&gt;arp-send: arp request built from 192.168.29.4 0050.56ac.aede for 192.168.29.1 at 123975080&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 18:17:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712112#M191160</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-27T18:17:05Z</dc:date>
    </item>
    <item>
      <title>When did you do the laptop</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712113#M191161</link>
      <description>&lt;P&gt;When did you do the laptop test because if the port was configured as a trunk port it should not have worked.&lt;/P&gt;&lt;P&gt;Can you post a "sh vlan brief" from the switch ?&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 18:28:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712113#M191161</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-05-27T18:28:36Z</dc:date>
    </item>
    <item>
      <title>No, I had it configured as an</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712114#M191162</link>
      <description>&lt;P&gt;No, I had it configured as an "access" port for the laptop.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Switch#sh vlan brief&amp;nbsp;&lt;/P&gt;&lt;P&gt;VLAN Name &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Status &amp;nbsp; &amp;nbsp;Ports&lt;BR /&gt;---- -------------------------------- --------- -------------------------------&lt;BR /&gt;1 &amp;nbsp; &amp;nbsp;default &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;active &amp;nbsp; &amp;nbsp;Gi1/0/3, Gi1/0/4, Gi1/0/5, Gi1/0/16, Gi1/0/17, Gi1/0/18, Gi1/0/19, Gi1/0/21, Gi1/0/22, Gi1/0/23, Gi1/0/27&lt;BR /&gt;15 &amp;nbsp; VLAN0015 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; active &amp;nbsp; &amp;nbsp;&lt;BR /&gt;20 &amp;nbsp; VLAN0020 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; active &amp;nbsp; &amp;nbsp;&lt;BR /&gt;25 &amp;nbsp; VLAN0025 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; active &amp;nbsp; &amp;nbsp;&lt;BR /&gt;29 &amp;nbsp; VLAN0029 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; active &amp;nbsp; &amp;nbsp;Gi1/0/13&lt;BR /&gt;30 &amp;nbsp; VLAN0030 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; active &amp;nbsp; &amp;nbsp;&lt;BR /&gt;35 &amp;nbsp; VLAN0035 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; active &amp;nbsp; &amp;nbsp;&lt;BR /&gt;37 &amp;nbsp; VLAN0037 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; active &amp;nbsp; &amp;nbsp;Gi1/0/6, Gi1/0/7, Gi1/0/8, Gi1/0/9, Gi1/0/24, Gi1/0/25&lt;BR /&gt;45 &amp;nbsp; VLAN0045 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; active &amp;nbsp; &amp;nbsp;Gi1/0/12, Gi1/0/14&lt;BR /&gt;1002 fddi-default &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; act/unsup&amp;nbsp;&lt;BR /&gt;1003 token-ring-default &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; act/unsup&amp;nbsp;&lt;BR /&gt;1004 fddinet-default &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;act/unsup&amp;nbsp;&lt;BR /&gt;1005 trnet-default &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;act/unsup&amp;nbsp;&lt;BR /&gt;Switch#&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 18:42:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712114#M191162</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-27T18:42:39Z</dc:date>
    </item>
    <item>
      <title>Can you explain the physical</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712115#M191163</link>
      <description>&lt;P&gt;Can you explain the physical connectivity ?&lt;/P&gt;&lt;P&gt;Why does the router have an interface&amp;nbsp;in vlan 45 which is the same vlan&amp;nbsp;as the ASA inside interface as well as in vlan 29 ie. &amp;nbsp;the outside interface of the ASA &amp;nbsp;?&lt;/P&gt;&lt;P&gt;What is the switch ie. is it L2 only or L3 ?&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 18:48:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712115#M191163</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-05-27T18:48:51Z</dc:date>
    </item>
    <item>
      <title>It's a layer 3 --- Cisco</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712116#M191164</link>
      <description>&lt;P&gt;It's a layer 3 --- Cisco 3750&lt;/P&gt;&lt;P&gt;The router is doing routing for 192.168.45.x on a subinterface&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 18:59:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712116#M191164</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-27T18:59:01Z</dc:date>
    </item>
    <item>
      <title>Right, but if the router has</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712117#M191165</link>
      <description>&lt;P&gt;Right, but if the router has interfaces for both the outside and inside interfaces of the ASA then it can just route around the firewall.&lt;/P&gt;&lt;P&gt;Is everything routed off the router ie. does the 3750 have any SVIs for internal subnets.&lt;/P&gt;&lt;P&gt;It sounds like the physical connectivity is amiss somewhere but I'm trying to understand what the setup is ie. you wouldn't normally have the outside interface of your ASA connecting to a router which also has an interface to the ASA's&amp;nbsp;inside interface vlan.&lt;/P&gt;&lt;P&gt;How is the traffic flow from an inside vlan/IP subnet to the router and presumably beyond to the internet meant to flow.&lt;/P&gt;&lt;P&gt;You have an EIGRP network statement on the router 192.168.0.0 0.0.255.255.&lt;/P&gt;&lt;P&gt;If you also have the same statement on your L3 switch and you have SVIs for your internal vlans/IP subnets on the 3750 then all traffic will, as I say, be routed around the firewall.&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 19:22:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712117#M191165</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-05-27T19:22:47Z</dc:date>
    </item>
    <item>
      <title>I moved the "inside" vlan 45</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712118#M191166</link>
      <description>&lt;P&gt;I moved the "inside" vlan 45 off this router and put it on another router. &amp;nbsp;Your'e correct about the eigrp routing. &amp;nbsp;There is &amp;nbsp;192.168.0.0 0.0.255.255 on the switch as well. &amp;nbsp;So, if I do a "ping outside 192.168.29.1" then it should flow through the ASA outside interface and then to the router. &amp;nbsp;However, this is not happening&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 19:44:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712118#M191166</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-27T19:44:00Z</dc:date>
    </item>
    <item>
      <title>Is the 3750 meant to be for</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712119#M191167</link>
      <description>&lt;P&gt;Is the 3750 meant to be for internal vlans/IP subnets ?&lt;/P&gt;&lt;P&gt;If so I don't understand where the other router you have moved the inside interface to fits into the topology ie. how does it connect to the 3750 ?&lt;/P&gt;&lt;P&gt;The arp debug suggest something has been cabled up incorrectly ie. have you checked the physical cables running from the ASA inside and outside interfaces and made sure they are connecting to the switch ports you think they are ?&lt;/P&gt;&lt;P&gt;Obviously if the ASA cannot ping the router then nothing is going to work so there are two issues here -&lt;/P&gt;&lt;P&gt;1) why can't you ping the router from the ASA. This is where you need to check physical connectivity and make sure the ASA outside interface is in vlan 29.&lt;/P&gt;&lt;P&gt;2) the actual traffic flow. I still don't have a clear picture of what you are trying to do overall ie. you have moved the inside interface to another router but how does that router fit into the overall picture.&lt;/P&gt;&lt;P&gt;Sorry to keep throwing questions back at you but it is not clear what exactly the setup is.&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 19:52:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712119#M191167</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-05-27T19:52:45Z</dc:date>
    </item>
    <item>
      <title>Here is a diagram.  There is</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712120#M191168</link>
      <description>&lt;P&gt;Here is a diagram. &amp;nbsp;There is a 3rd connection on Router 0 which is for the internet&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;IMG src="webkit-fake-url://9e27a7a1-8689-4eeb-8b5a-f5be0b5c4bd1/image.tiff" /&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2015 20:47:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712120#M191168</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-27T20:47:50Z</dc:date>
    </item>
    <item>
      <title>HI Jon,I found the reason for</title>
      <link>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712121#M191169</link>
      <description>&lt;P&gt;HI Jon,&lt;/P&gt;&lt;P&gt;I found the reason for this issue. &amp;nbsp;I'm using the Cisco ASAv and I didn't notice that Network 0 in vsphere was designated as the Management interface and I was using it as the outside interface. I just assumed that Network 0 would correspond to gi&amp;nbsp;0/0 and management would be called management. &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks again&lt;/P&gt;</description>
      <pubDate>Thu, 28 May 2015 12:38:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/unable-to-ping-router-s-interface-from-asa/m-p/2712121#M191169</guid>
      <dc:creator>kc1978</dc:creator>
      <dc:date>2015-05-28T12:38:12Z</dc:date>
    </item>
  </channel>
</rss>

