<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic thanks it works, i also added in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706015#M194390</link>
    <description>&lt;P&gt;thanks it works, i also added NAT because ISP was not doing NAT.&lt;/P&gt;&lt;P&gt;now i have DMZ&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;nameif DMZ&lt;BR /&gt;&amp;nbsp;security-level 10&lt;BR /&gt;&amp;nbsp;ip address 192.168.20.1 255.255.255.0&amp;nbsp;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;What should i do so it works. I have four to five server in DMZ.&lt;/P&gt;&lt;P&gt;Do i need to create a nat or route for this too?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 23 Jun 2015 15:27:43 GMT</pubDate>
    <dc:creator>macboy276</dc:creator>
    <dc:date>2015-06-23T15:27:43Z</dc:date>
    <item>
      <title>config firewall 5512</title>
      <link>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706012#M194386</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i am trying to configure my new firewall 5512. here is how i configure and not getting out to internet.&lt;/P&gt;
&lt;P&gt;My internet service provider has also a cisco firewall place on premise which has the following configuration.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;description Outside Interface&lt;BR /&gt;&amp;nbsp;speed 100&lt;BR /&gt;&amp;nbsp;duplex full&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 14.15.14.7&amp;nbsp;255.255.255.252&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;description Inside Interface&lt;BR /&gt;&amp;nbsp;speed 100&lt;BR /&gt;&amp;nbsp;duplex full&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 13.15.13.1 255.255.255.0&lt;BR /&gt;!&lt;/P&gt;
&lt;P&gt;I have configure my local firewall with the following configuration.&lt;/P&gt;

&lt;PRE style="color: rgb(0, 0, 0); line-height: normal;"&gt;
!
interface GigabitEthernet0/0
 nameif inside
 security-level 100
 ip address 192.168.10.1 255.255.255.0 
!
interface GigabitEthernet0/1
 nameif outside
 security-level 0
 ip address 13.15.13.60 255.255.255.0 
!&lt;/PRE&gt;

&lt;PRE style="color: rgb(0, 0, 0); line-height: normal;"&gt;
route outside 13.15.13.0 255.255.255.0 13.15.13.1 1&lt;/PRE&gt;

&lt;P&gt;i have configure a local computer with the following setting&lt;/P&gt;
&lt;P&gt;192.168.10.32&lt;/P&gt;
&lt;P&gt;255.255.255.0&lt;/P&gt;
&lt;P&gt;192.168.10.1&lt;/P&gt;
&lt;P&gt;what else is needed to get out to internet&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:10:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706012#M194386</guid>
      <dc:creator>macboy276</dc:creator>
      <dc:date>2019-03-12T06:10:19Z</dc:date>
    </item>
    <item>
      <title>object-group network &lt;OBJ</title>
      <link>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706013#M194387</link>
      <description>&lt;P&gt;object-group network &amp;lt;OBJ-NAME&amp;gt;&amp;nbsp;&lt;BR /&gt;network-object 192.168.10.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside,outside) after-auto source dynamic &amp;lt;OBJ-NAME&amp;gt; interface&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2015 14:32:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706013#M194387</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-06-23T14:32:48Z</dc:date>
    </item>
    <item>
      <title>Just noticed that your route</title>
      <link>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706014#M194388</link>
      <description>&lt;P&gt;Just noticed that your route needs changing ie. it should be -&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 &amp;lt;ISP next hop IP&amp;gt;&lt;/P&gt;&lt;P&gt;Also the previous post was to translate your private IPs to your public IP on the outside interface of your ASA.&lt;/P&gt;&lt;P&gt;Are you sure the ISP firewall is not doing the translations for you ?&lt;/P&gt;&lt;P&gt;If they are then you don't need the NAT setup.&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2015 15:27:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706014#M194388</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-06-23T15:27:42Z</dc:date>
    </item>
    <item>
      <title>thanks it works, i also added</title>
      <link>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706015#M194390</link>
      <description>&lt;P&gt;thanks it works, i also added NAT because ISP was not doing NAT.&lt;/P&gt;&lt;P&gt;now i have DMZ&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;nameif DMZ&lt;BR /&gt;&amp;nbsp;security-level 10&lt;BR /&gt;&amp;nbsp;ip address 192.168.20.1 255.255.255.0&amp;nbsp;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;What should i do so it works. I have four to five server in DMZ.&lt;/P&gt;&lt;P&gt;Do i need to create a nat or route for this too?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2015 15:27:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706015#M194390</guid>
      <dc:creator>macboy276</dc:creator>
      <dc:date>2015-06-23T15:27:43Z</dc:date>
    </item>
    <item>
      <title>You don't need a route but it</title>
      <link>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706016#M194392</link>
      <description>&lt;P&gt;You don't need a route but it depends on what you want to do with those servers.&lt;/P&gt;&lt;P&gt;Are you wanting to provide access to the internet for these servers or do you want to allow internet access to them on certain ports ?&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2015 15:29:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706016#M194392</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-06-23T15:29:39Z</dc:date>
    </item>
    <item>
      <title>the following is the config</title>
      <link>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706017#M194394</link>
      <description>&lt;P&gt;the following is the config from old firewall&lt;/P&gt;&lt;P&gt;we host webserver and we want to be available on internet&amp;nbsp;&lt;/P&gt;&lt;P&gt;static (dmz,outside) 13.15.13.14 WEB netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;static (inside,dmz) 192.168.2.73 Email_DNS netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;static (inside,dmz) 192.168.2.77 serverex2 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;static (dmz,outside) 13.15.13.13 192.168.20.13 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;static (dmz,outside) 13.15.13.15 192.168.2.101 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;static (inside,dmz) 192.168.20.10 sIMS1 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;static (inside,dmz) 192.168.20.11 SEEX2 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;global (dmz) 1 192.168.20.21 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;global (dmz) 3 192.168.20.23 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;global (dmz) 4 192.168.20.24 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;global (dmz) 5 192.168.20.25 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;nat (dmz) 0 access-list dmz_nat0_outbound&lt;/P&gt;&lt;P&gt;nat (dmz) 2 DMZ_Subnet 255.255.255.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2015 16:24:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/config-firewall-5512/m-p/2706017#M194394</guid>
      <dc:creator>macboy276</dc:creator>
      <dc:date>2015-06-23T16:24:18Z</dc:date>
    </item>
  </channel>
</rss>

