<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi yes I want to route in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640537#M194730</link>
    <description>&lt;P&gt;Hi yes I want to route outside using&amp;nbsp;the 2 outside interface of the firewall so that I can use both outside interface.&lt;/P&gt;&lt;P&gt;Please see the attached picture for reference. just disregard all the ip addresses.&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
    <pubDate>Fri, 24 Apr 2015 06:12:19 GMT</pubDate>
    <dc:creator>Lost &amp; Found</dc:creator>
    <dc:date>2015-04-24T06:12:19Z</dc:date>
    <item>
      <title>ASA 5510 Configuration. how to configure 2 outside interface.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640535#M194725</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;I Have Cisco 5510 ASA and from workstation I want create a new&amp;nbsp;route to another Router (Outside) facing my ISP.&lt;/P&gt;&lt;P&gt;From Workstation I can Ping ASA E0/2 interface but I cant ping ISP B router inside and outside interface.&lt;/P&gt;&lt;P&gt;I based all my configuration on the existing config. which until now is working&amp;nbsp;&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;BR /&gt;&amp;nbsp;description outside interface&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 122.55.71.138&amp;nbsp;255.255.255.2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt;&amp;nbsp;description inside interface&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.34.63.252 255.255.240.0&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt;&amp;nbsp;description outside interface&lt;BR /&gt;&amp;nbsp;nameif outsides&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 121.97.64.178&amp;nbsp;255.255.255.240&lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;global (outsides) 2&amp;nbsp;interface ( I created this for E0/2)&lt;/STRONG&gt;&lt;BR /&gt;nat (inside) 0 access-list nonat&lt;/P&gt;&lt;P&gt;nat (inside) 1 10.34.48.11&amp;nbsp;255.255.255.255 (Working: To E0/0 to Router ISP A inside and outside interface)&lt;/P&gt;&lt;P&gt;nat (inside) 2&amp;nbsp;10.34.48.32&amp;nbsp;255.255.255.255 (Working: To E0/2&amp;nbsp;to Router ISP A inside interface only &lt;STRONG&gt;but outside cant ping&lt;/STRONG&gt;).&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 122.55.71.139&amp;nbsp;1 (Working)&lt;/P&gt;&lt;P&gt;route outside 10.34.48.32 255.255.255.255&amp;nbsp;121.97.64.179&amp;nbsp; 1 (Test&amp;nbsp;For New Route)&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ISP Router A working Can ping and I can access the internet&lt;/P&gt;&lt;P&gt;interface FastEthernet0/0&lt;BR /&gt;&amp;nbsp;description Connection to ASA5510&amp;nbsp;&lt;BR /&gt;&amp;nbsp;ip address 122.55.71.139 255.255.255.248&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;ip nat inside&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface S0/0&lt;BR /&gt;&amp;nbsp;ip address 111.54.29.122 255.255.255.252&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;ip nat outside&lt;BR /&gt;!&lt;BR /&gt;ip nat inside source static 122.55.71.139 111.54.29.122&lt;BR /&gt;ip http server&lt;BR /&gt;ip classless&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 Serial0/0&lt;/P&gt;&lt;P&gt;&amp;nbsp;ISP 2&lt;/P&gt;&lt;P&gt;interface FastEthernet0/0 &lt;STRONG&gt;( ASA Can ping this interface)&lt;/STRONG&gt;&lt;BR /&gt;&amp;nbsp;description Connection to ASA5510&amp;nbsp;&lt;BR /&gt;&amp;nbsp;ip address 121.97.64.179&amp;nbsp;255.255.255.248&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;ip nat inside&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface E0/0&lt;STRONG&gt;&amp;nbsp;( ASA Can 't ping this interface)&lt;/STRONG&gt;&lt;BR /&gt;&amp;nbsp;ip address 121.97.69.122 255.255.255.252&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;ip nat outside&lt;BR /&gt;!&lt;BR /&gt;ip nat inside source static&amp;nbsp;121.97.64.179&amp;nbsp;121.97.69.122&amp;nbsp;&lt;BR /&gt;ip http server&lt;BR /&gt;ip classless&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 E0/0&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;CABLES&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;B&gt;ASA to ISP Router B ( Straight through Cable)&lt;/B&gt;&lt;/P&gt;&lt;P&gt;&lt;B&gt;ISP Router to IDU (&amp;nbsp;Straight through Cable)&lt;/B&gt;&lt;/P&gt;&lt;P&gt;Hope you could give some tips and solution for this kind of problem thanks&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:49:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640535#M194725</guid>
      <dc:creator>Lost &amp; Found</dc:creator>
      <dc:date>2019-03-12T05:49:31Z</dc:date>
    </item>
    <item>
      <title>Hi,You can only use a single</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640536#M194727</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;You can only use a single Default route on the ASA device.&lt;/P&gt;&lt;P&gt;Now , as per your requirement ,&lt;/P&gt;&lt;P&gt;route outside 10.34.48.32 255.255.255.255&amp;nbsp;121.97.64.179&amp;nbsp; 1 (Test&amp;nbsp;For New Route)&lt;/P&gt;&lt;P&gt;(Why do you have this route on the ASA device ?) I see this in the Inside interface Subnet.&lt;/P&gt;&lt;P&gt;Route lookup would be Destination based.&lt;/P&gt;&lt;P&gt;Are you looking to route specific traffic out thru the "outsides" interface ?&lt;/P&gt;&lt;P&gt;If yes , this configuration would not work unless you use some workaround configuration on the ASA device.&lt;/P&gt;&lt;P&gt;Refer:-&lt;/P&gt;&lt;P&gt;https://supportforums.cisco.com/document/59986/loadbalancing-dual-isp-asa&lt;/P&gt;&lt;P&gt;https://supportforums.cisco.com/document/49756/asapix-load-balancing-between-two-isp-options&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Fri, 24 Apr 2015 05:55:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640536#M194727</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-04-24T05:55:00Z</dc:date>
    </item>
    <item>
      <title>Hi yes I want to route</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640537#M194730</link>
      <description>&lt;P&gt;Hi yes I want to route outside using&amp;nbsp;the 2 outside interface of the firewall so that I can use both outside interface.&lt;/P&gt;&lt;P&gt;Please see the attached picture for reference. just disregard all the ip addresses.&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Fri, 24 Apr 2015 06:12:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640537#M194730</guid>
      <dc:creator>Lost &amp; Found</dc:creator>
      <dc:date>2015-04-24T06:12:19Z</dc:date>
    </item>
    <item>
      <title>Hi,Although , PBR has been</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640538#M194731</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Although , PBR has been introduced but that will not be supported on this ASA device.&lt;/P&gt;&lt;P&gt;The only workaround is there in the URL link that i provided to you earlier.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Fri, 24 Apr 2015 06:17:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640538#M194731</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-04-24T06:17:09Z</dc:date>
    </item>
    <item>
      <title>But For now I want to ping my</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640539#M194732</link>
      <description>&lt;P&gt;But For now I want to ping my Router B inside and outside interface. but it seems that firewall is not passing or may be the router is not permitting my packet from my workstation.&lt;/P&gt;&lt;P&gt;-mtu outsides 1500&lt;BR /&gt;-icmp permit any outsides&lt;/P&gt;&lt;P&gt;-global (outsides) 2 interface&lt;BR /&gt;-nat (inside) 2 10.34.50.32 255.255.255.255&lt;BR /&gt;-route outsides 0.0.0.0 0.0.0.0 121.97.64.179&amp;nbsp;2 (Router Inside Interface)&lt;BR /&gt;-route inside 10.34.50.0 255.255.255.0 10.34.63.254 1&lt;/P&gt;&lt;P&gt;Please see the attached file. Test ping&lt;/P&gt;</description>
      <pubDate>Fri, 24 Apr 2015 06:21:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640539#M194732</guid>
      <dc:creator>Lost &amp; Found</dc:creator>
      <dc:date>2015-04-24T06:21:53Z</dc:date>
    </item>
    <item>
      <title>Hi,Are you able to ping the</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640540#M194733</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Are you able to ping the router interface IP from the ASA device ? If yes , try a packet trace on the ASA device for the traffic for the router IP address.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Apr 2015 06:47:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640540#M194733</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-04-24T06:47:41Z</dc:date>
    </item>
    <item>
      <title>Hi,Yes From firewall i can</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640541#M194734</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Yes From firewall i can ping Router inside and outside interface.&lt;/P&gt;&lt;P&gt;Regarding to packet trace It's not enable on my ASA but when I try to enable it there are some commands not supported by my version.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Fri, 24 Apr 2015 13:50:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-configuration-how-to-configure-2-outside-interface/m-p/2640541#M194734</guid>
      <dc:creator>Lost &amp; Found</dc:creator>
      <dc:date>2015-04-24T13:50:15Z</dc:date>
    </item>
  </channel>
</rss>

