<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5520 - Can not change default route. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461530#M269608</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Does your "Outside" interface have its IP address obtained from DHCP with the "setroute" option?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 17 Feb 2014 23:09:44 GMT</pubDate>
    <dc:creator>jj27</dc:creator>
    <dc:date>2014-02-17T23:09:44Z</dc:date>
    <item>
      <title>ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461521#M269590</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My asa is sitting behind a router the next hop from the ASA to the router is 10.0.0.5 I have tried to change the default route to route DMZ 0 0 10.0.0.5&amp;nbsp; to no availability right now the default route is (S*&amp;nbsp;&amp;nbsp; 0.0.0.0 0.0.0.0 [1/0] via 172.16.8.20, Outside) but even if I were to do a "no route Outside 0 0 172.16.8.20" the default route does not disappear when I do a "sh route" command. ant help would be greatly appreciated.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 03:45:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461521#M269590</guid>
      <dc:creator>coperi800</dc:creator>
      <dc:date>2019-03-12T03:45:53Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461522#M269592</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Your post is unclear. Is your default route out the DMZ or out the Outside interface? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;C&lt;SPAN style="font-size: 10pt;"&gt;a&lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;n you share your configuration or at least "show ip address" and "show route" from your ASA?&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 15 Feb 2014 07:53:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461522#M269592</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-02-15T07:53:10Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461523#M269594</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Can you try clear configure route 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Don't forget to rate helpful posts.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 16 Feb 2014 10:43:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461523#M269594</guid>
      <dc:creator>cadet alain</dc:creator>
      <dc:date>2014-02-16T10:43:59Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461524#M269596</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;Can you share your configuration! Then i short out what is the problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Parosh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 16 Feb 2014 13:17:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461524#M269596</guid>
      <dc:creator>Mizanul Islam</dc:creator>
      <dc:date>2014-02-16T13:17:37Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461525#M269599</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for your replay alain. "configure" is not an option on my asa. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;clear &lt;STRONG&gt;configure &lt;/STRONG&gt;route 0 0&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Feb 2014 16:21:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461525#M269599</guid>
      <dc:creator>coperi800</dc:creator>
      <dc:date>2014-02-17T16:21:55Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461526#M269600</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You need to be in global configuration mode before issuing the "clear configure route 0 0 " command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/security/asa/command-reference/cmdref/c3.html#pgfId-2453476"&gt;Reference&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Again, sharing your configuration (or at least the relevant sections) helps us better understand the problem. If you choose not to do so, our ability and willingness to assist is constrained.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Feb 2014 16:31:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461526#M269600</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-02-17T16:31:01Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461527#M269602</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I apologize for not being clear hopefully this helps. Basically the&amp;nbsp; default route should be: route DMZ 0.0.0.0 0.0.0.0 10.10.10.5, I had to&amp;nbsp; add a metric of 2 because otherwise it would conflict with the Gateway&amp;nbsp; of last resort, the interesting part is if I try to remove the current&amp;nbsp; gateway of last resort then the error I get is&amp;nbsp; &lt;STRONG&gt;%No matching route to delete&lt;/STRONG&gt; and I try to add the new route I get &lt;STRONG&gt;ERROR: Cannot add route entry, conflict with existing routes&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;**"show ip address" output---&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP address&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Subnet mask&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Method&lt;/P&gt;&lt;P&gt;GigabitEthernet0/0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Outside&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.22.8.166&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.252.0&amp;nbsp;&amp;nbsp; CONFIG&lt;/P&gt;&lt;P&gt;GigabitEthernet0/3&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; DMZ&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.10.16&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.0&amp;nbsp;&amp;nbsp; CONFIG&lt;/P&gt;&lt;P&gt;Management0/0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; management&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.100.1&amp;nbsp;&amp;nbsp; 255.255.255.0&amp;nbsp;&amp;nbsp; CONFIG&lt;/P&gt;&lt;P&gt;GigabitEthernet1/0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inside&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.16.0.2&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.252.0&amp;nbsp;&amp;nbsp; CONFIG&lt;/P&gt;&lt;P&gt;GigabitEthernet1/1&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; VPN&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; X.X.X.X&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.240 CONFIG&lt;/P&gt;&lt;P&gt;Current IP Addresses:&lt;/P&gt;&lt;P&gt;Interface&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP address&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Subnet mask&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Method&lt;/P&gt;&lt;P&gt;GigabitEthernet0/0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Outside&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.22.8.166&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.252.0&amp;nbsp;&amp;nbsp; CONFIG&lt;/P&gt;&lt;P&gt;GigabitEthernet0/3&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; DMZ&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.10.16&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.0&amp;nbsp;&amp;nbsp; CONFIG&lt;/P&gt;&lt;P&gt;Management0/0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; management&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.100.1&amp;nbsp;&amp;nbsp; 255.255.255.0&amp;nbsp;&amp;nbsp; CONFIG&lt;/P&gt;&lt;P&gt;GigabitEthernet1/0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inside&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.16.0.2&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.252.0&amp;nbsp;&amp;nbsp; CONFIG&lt;/P&gt;&lt;P&gt;GigabitEthernet1/1&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; VPN&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; X.X.X.X&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.240 CONFIG&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;**"show running-config" output---&lt;/P&gt;&lt;P&gt;!The DMZ route should be the gateway of last resort&lt;/P&gt;&lt;P&gt;route DMZ 0.0.0.0 0.0.0.0 10.10.10.5 2&lt;/P&gt;&lt;P&gt;route Outside 10.0.1.0 255.255.255.252 172.22.8.20 1&lt;/P&gt;&lt;P&gt;route Outside 10.0.2.0 255.255.255.252 172.22.8.20 1&lt;/P&gt;&lt;P&gt;route Outside 10.0.4.0 255.255.255.252 172.22.8.20 1&lt;/P&gt;&lt;P&gt;route Outside 10.0.5.0 255.255.255.240 172.22.8.20 1&lt;/P&gt;&lt;P&gt;route Outside 10.0.6.0 255.255.255.252 172.22.8.20 1&lt;/P&gt;&lt;P&gt;route Outside 10.0.25.0 255.255.255.0 172.22.8.20 1&lt;/P&gt;&lt;P&gt;route Outside 10.0.52.0 255.255.255.0 172.22.8.20 1&lt;/P&gt;&lt;P&gt;route Inside 172.16.0.0 255.255.252.0 172.16.0.3 1&lt;/P&gt;&lt;P&gt;route Outside 172.16.6.0 255.255.255.0 172.16.6.1 1&lt;/P&gt;&lt;P&gt;route Outside 172.22.0.0 255.255.0.0 172.22.8.20 10&lt;/P&gt;&lt;P&gt;route Outside 192.168.0.0 255.255.255.0 172.22.8.20 255&lt;/P&gt;&lt;P&gt;route DMZ 192.168.200.0 255.255.255.0 156.108.124.66 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;**"show route" output ---&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Codes: C - connected, S - static, I - IGRP, R - RIP, M - mobile, B - BGP&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; * - candidate default, U - per-user static route, o - ODR&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; P - periodic downloaded static route&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Gateway of last resort is 172.22.8.20 to network 0.0.0.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.16.6.0 255.255.255.0 [1/0] via 172.16.6.1, Outside&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;C&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.16.0.0 255.255.252.0 is directly connected, Inside&lt;/P&gt;&lt;P&gt;C&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.22.8.0 255.255.252.0 is directly connected, Outside&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.22.0.0 255.255.0.0 [10/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;D&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.4.8 255.255.255.252 [90/2178816] via 172.16.0.3, 66:37:21, Inside&lt;/P&gt;&lt;P&gt;D&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.4.9 255.255.255.255 [90/2178816] via 172.16.0.3, 66:37:21, Inside&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.0.2.0 255.255.255.252 [1/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;D&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.0.0.0 255.255.255.0 [90/3072] via 172.16.0.3, 66:37:21, Inside&lt;/P&gt;&lt;P&gt;C&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.10.0 255.255.255.0 is directly connected, DMZ&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.0.1.0 255.255.255.252 [1/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.0.6.0 255.255.255.252 [1/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.0.4.0 255.255.255.252 [1/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.0.5.0 255.255.255.240 [1/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.0.25.0 255.255.255.0 [1/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.0.52.0 255.255.255.0 [1/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [255/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;P&gt;D&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.100.0 255.255.255.0 [90/3072] via 172.16.0.3, 66:37:21, Inside&lt;/P&gt;&lt;P&gt;! I have tried to remove the route below with the command "no&amp;nbsp; route Outside 0 0 172.22.8.20" but always get the error %No matching&amp;nbsp; route to delete&lt;/P&gt;&lt;P&gt;S*&amp;nbsp;&amp;nbsp; 0.0.0.0 0.0.0.0 [1/0] via 172.22.8.20, Outside&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Feb 2014 18:26:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461527#M269602</guid>
      <dc:creator>coperi800</dc:creator>
      <dc:date>2014-02-17T18:26:43Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461528#M269604</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you or is anyone else connecting to the ASA via VPN? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I ask because there is the chance you may be getting a default route injected via reverse route injection (RRI) or other configuration inthe VPN.Such a route would show up in the routing table but not in the running configuration.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Feb 2014 18:41:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461528#M269604</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-02-17T18:41:35Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461529#M269606</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Marvin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First I want to say thanks for your help... Yes there are 2 L2L vpns connected to this particular device. I did not know what RRI was until you mentioned it. Also OSPF was enabled on this device but disabled it when I was trying to troubleshoot. I have access to one of the two devices involved with the VPN tunnels. Is there a way to verify that RRI is causing the route injection?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Feb 2014 20:35:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461529#M269606</guid>
      <dc:creator>coperi800</dc:creator>
      <dc:date>2014-02-17T20:35:36Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461530#M269608</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Does your "Outside" interface have its IP address obtained from DHCP with the "setroute" option?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Feb 2014 23:09:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461530#M269608</guid>
      <dc:creator>jj27</dc:creator>
      <dc:date>2014-02-17T23:09:44Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461531#M269610</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Excellent thought, jjohnston. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That sounds even more likely than the path I was going down with RRI. I hadn't considered that since I so seldom ever see a production ASA with DHCP addressing on its main interface (in fact I've only seen them described here - usually in people's home labs)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Feb 2014 23:13:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461531#M269610</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-02-17T23:13:36Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461532#M269613</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you everyone for your help with my problem. After Marvin mentioned RRI I started looking at configurations and found this:&lt;STRONG&gt; "crypto map outside_map 1 set reverse-route" &lt;/STRONG&gt;on the asa on the branch location. Before Marvin mentioned it I never knew what RRI was but added a few static routes and things are working now. So I think it was RRI after all.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Feb 2014 17:57:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461532#M269613</guid>
      <dc:creator>coperi800</dc:creator>
      <dc:date>2014-02-18T17:57:13Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5520 - Can not change default route.</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461533#M269614</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Cool. Another one solved. Plus we all learn (or re-learn) something. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the rating.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Feb 2014 18:00:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-can-not-change-default-route/m-p/2461533#M269614</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-02-18T18:00:30Z</dc:date>
    </item>
  </channel>
</rss>

