<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5505 issue (8.2 IOS) in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547558#M235852</link>
    <description>&lt;P&gt;Guys we have an ASA 5505 which is running 8.2 code&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we have three vlans 1, 2, 3&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;vlan 1 is inside&lt;/P&gt;&lt;P&gt;vlan 3 is connected to another office&amp;nbsp; vlan is 172.168.1.1 (same owners) and we have few servers there which are 192.168.1.0/24 (server farm)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;vlan 1 is 10.0.0.0/24&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;we can ping the servers from inside to the vlan 3 no issues......but we cant ping or access any thing from 192.X network&lt;/P&gt;&lt;P&gt;the access-list is allowed on vlan 3 ip any as its trusted network....&lt;/P&gt;&lt;P&gt;The routes are in placed as wel i cant figure it out i never worked on 8.2 but there is NAT configured maybe that is the issues. which is as under&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;global (CO_Services) 1 interface&amp;nbsp; (this is vlan 3)&lt;BR /&gt;global (OUTSIDEINTERNET) 1 interface&lt;BR /&gt;nat (inside) 1 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Guys can someone please help as i am helpless&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 04:35:16 GMT</pubDate>
    <dc:creator>The_guroo_2</dc:creator>
    <dc:date>2019-03-12T04:35:16Z</dc:date>
    <item>
      <title>ASA 5505 issue (8.2 IOS)</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547558#M235852</link>
      <description>&lt;P&gt;Guys we have an ASA 5505 which is running 8.2 code&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we have three vlans 1, 2, 3&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;vlan 1 is inside&lt;/P&gt;&lt;P&gt;vlan 3 is connected to another office&amp;nbsp; vlan is 172.168.1.1 (same owners) and we have few servers there which are 192.168.1.0/24 (server farm)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;vlan 1 is 10.0.0.0/24&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;we can ping the servers from inside to the vlan 3 no issues......but we cant ping or access any thing from 192.X network&lt;/P&gt;&lt;P&gt;the access-list is allowed on vlan 3 ip any as its trusted network....&lt;/P&gt;&lt;P&gt;The routes are in placed as wel i cant figure it out i never worked on 8.2 but there is NAT configured maybe that is the issues. which is as under&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;global (CO_Services) 1 interface&amp;nbsp; (this is vlan 3)&lt;BR /&gt;global (OUTSIDEINTERNET) 1 interface&lt;BR /&gt;nat (inside) 1 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Guys can someone please help as i am helpless&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:35:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547558#M235852</guid>
      <dc:creator>The_guroo_2</dc:creator>
      <dc:date>2019-03-12T04:35:16Z</dc:date>
    </item>
    <item>
      <title>So inside can ping/access CO</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547559#M235854</link>
      <description>&lt;P&gt;So inside can ping/access CO_Services but CO_Services cannot ping/access inside?&lt;/P&gt;&lt;P&gt;Are you running the security plus license on the ASA? (show version)&lt;/P&gt;&lt;P&gt;If you could do a packet tracer and post the output here&lt;/P&gt;&lt;P&gt;packet-tracer input OC_Services tcp 172.168.1.10 12345 10.0.0.10 80 detail&lt;/P&gt;&lt;P&gt;This should give us an indication of if the ASA is blocking the traffic.&lt;/P&gt;&lt;P&gt;Also, would help to see the full configuration (sanitised) of the 5505.&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;/P&gt;</description>
      <pubDate>Wed, 06 Aug 2014 10:52:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547559#M235854</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2014-08-06T10:52:33Z</dc:date>
    </item>
    <item>
      <title>Hi error...is i gues RFP can</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547560#M235856</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;error...is i gues RFP&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;can you plz advise&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Phase: 8&lt;BR /&gt;Type: NAT&lt;BR /&gt;Subtype: rpf-check&lt;BR /&gt;Result: DROP&lt;BR /&gt;Config:&lt;BR /&gt;nat (inside) 1 10.0.0.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; match ip inside 10.0.0.0 255.255.255.0 CO_Services any&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; dynamic translation to pool 1 (172.168.1.1 [Interface PAT])&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 721, untranslate_hits = 112&lt;BR /&gt;Additional Information:&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;Result:&lt;BR /&gt;input-interface: CO_Services&lt;BR /&gt;input-status: up&lt;BR /&gt;input-line-status: up&lt;BR /&gt;output-interface: inside&lt;BR /&gt;output-status: up&lt;BR /&gt;output-line-status: up&lt;BR /&gt;Action: drop&lt;BR /&gt;Drop-reason: (acl-drop) Flow is denied by configured rule&lt;/P&gt;</description>
      <pubDate>Thu, 07 Aug 2014 10:27:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547560#M235856</guid>
      <dc:creator>The_guroo_2</dc:creator>
      <dc:date>2014-08-07T10:27:01Z</dc:date>
    </item>
    <item>
      <title>Hi error...is i gues RFP can</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547561#M235858</link>
      <description>&lt;DIV class="discussion-body node-body"&gt;&lt;DIV class="field field-name-comment-body field-type-text-long field-label-hidden"&gt;&lt;DIV class="field-items"&gt;&lt;DIV class="field-item even"&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;error...is i gues RFP&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;can you plz advise&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Phase: 8&lt;BR /&gt;Type: NAT&lt;BR /&gt;Subtype: rpf-check&lt;BR /&gt;Result: DROP&lt;BR /&gt;Config:&lt;BR /&gt;nat (inside) 1 10.0.0.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; match ip inside 10.0.0.0 255.255.255.0 CO_Services any&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; dynamic translation to pool 1 (172.168.1.1 [Interface PAT])&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 721, untranslate_hits = 112&lt;BR /&gt;Additional Information:&lt;BR /&gt;&amp;lt;--- More ---&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;Result:&lt;BR /&gt;input-interface: CO_Services&lt;BR /&gt;input-status: up&lt;BR /&gt;input-line-status: up&lt;BR /&gt;output-interface: inside&lt;BR /&gt;output-status: up&lt;BR /&gt;output-line-status: up&lt;BR /&gt;Action: drop&lt;BR /&gt;Drop-reason: (acl-drop) Flow is denied by configured rule&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Thu, 07 Aug 2014 10:28:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547561#M235858</guid>
      <dc:creator>The_guroo_2</dc:creator>
      <dc:date>2014-08-07T10:28:10Z</dc:date>
    </item>
    <item>
      <title>The RFP error means that the</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547562#M235861</link>
      <description>&lt;P&gt;The RFP error means that the source address you configured is not found through the source interface, or that is what it normally means.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could you please post the full output of the packet tracer including the packet-tracer command.&lt;/P&gt;&lt;P&gt;Also please posts a full running config (sanitised) of the ASA.&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;/P&gt;</description>
      <pubDate>Thu, 07 Aug 2014 10:33:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-issue-8-2-ios/m-p/2547562#M235861</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2014-08-07T10:33:08Z</dc:date>
    </item>
  </channel>
</rss>

