<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA drops HTTP packets in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154900#M360161</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;On your screenshot i see the outside interface as a source. So you're trying to trace from outside to outside. What for? Or, if you're doing it on purpose (i don't know how and why) you have to add &lt;EM&gt;same security traffic permit intra-interface.&lt;/EM&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 14 Mar 2013 20:21:36 GMT</pubDate>
    <dc:creator>Andrew Phirsov</dc:creator>
    <dc:date>2013-03-14T20:21:36Z</dc:date>
    <item>
      <title>ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154898#M360159</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;maybe I am overlooking a simple step, but here's the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My config:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Windows 7 host&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;MS Loopback Adapter with ICS&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;GNS3&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA 8.42 with &lt;SPAN style="font-size: 10pt;"&gt;ASDM 6.4&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Vmware Workstation 7 with &lt;SPAN style="font-size: 10pt;"&gt;Windows XP SP3 vm&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All are working like a charm, from my virtual XP machine I can ping every site, e.g. &lt;A href="https://community.cisco.com/www.google.com" target="_blank"&gt;www.google.com&lt;/A&gt; which replies nice with it's ip-address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, I cannot reach ANY website&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I connect through a Cisco 3700 router the webbrowser works perfect, so it must be something in the ASA configuration (I presume &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've tried about all possible Access Rules, but still nothing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Jan&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;p.s. see attached result from Packet tracer. (source is my virtual xp machine, destination is google.com's ip-address)&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 01:14:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154898#M360159</guid>
      <dc:creator>cisco</dc:creator>
      <dc:date>2019-03-12T01:14:21Z</dc:date>
    </item>
    <item>
      <title>ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154899#M360160</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you please share the "show run" output from your ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Juan Lombana&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Mar 2013 20:16:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154899#M360160</guid>
      <dc:creator>julomban</dc:creator>
      <dc:date>2013-03-14T20:16:53Z</dc:date>
    </item>
    <item>
      <title>ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154900#M360161</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;On your screenshot i see the outside interface as a source. So you're trying to trace from outside to outside. What for? Or, if you're doing it on purpose (i don't know how and why) you have to add &lt;EM&gt;same security traffic permit intra-interface.&lt;/EM&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Mar 2013 20:21:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154900#M360161</guid>
      <dc:creator>Andrew Phirsov</dc:creator>
      <dc:date>2013-03-14T20:21:36Z</dc:date>
    </item>
    <item>
      <title>ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154901#M360162</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sure &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is still very basic btw:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE style="color: #000000; word-wrap: break-word; white-space: pre-wrap;"&gt;ASA Version 8.4(2) 
!
hostname ciscoasa
enable password ******************** encrypted
passwd ***************** encrypted
names
!
interface GigabitEthernet0
 nameif outside
 security-level 0
 ip address 192.168.137.2 255.255.255.0 
!
interface GigabitEthernet1
 shutdown
 no nameif
 no security-level
 no ip address
!
interface GigabitEthernet2
 shutdown
 no nameif
 no security-level
 no ip address
!
interface GigabitEthernet3
 shutdown
 no nameif
 no security-level
 no ip address
!
interface GigabitEthernet4
 shutdown
 no nameif
 no security-level
 no ip address
!
interface GigabitEthernet5
 nameif inside
 security-level 100
 ip address 10.10.0.254 255.255.255.0 
!
boot config disk0:/startup-config
ftp mode passive
clock timezone CEST 1
clock summer-time CEDT recurring last Sun Mar 2:00 last Sun Oct 3:00
dns domain-lookup outside
dns domain-lookup inside
dns server-group DefaultDNS
 name-server 192.168.2.254
object network host
 host 192.168.2.3
object network loopback
 host 192.168.137.1
object network gateway
 host 192.168.2.254
object network lan
 subnet 192.168.2.0 255.255.255.0
object-group protocol TCPUDP
 protocol-object udp
 protocol-object tcp
access-list outside_access_in extended permit ip any any 
access-list outside_access_in extended permit tcp any any eq www 
access-list web standard permit any 
pager lines 24
logging enable
logging asdm informational
mtu outside 1500
mtu inside 1500
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-641.bin
no asdm history enable
arp timeout 14400
access-group outside_access_in in interface outside
route outside 0.0.0.0 0.0.0.0 192.168.137.1 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
dynamic-access-policy-record DfltAccessPolicy
user-identity default-domain LOCAL
http server enable
http 192.168.137.1 255.255.255.255 outside
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart
telnet timeout 5
ssh timeout 5
console timeout 0
threat-detection basic-threat
threat-detection statistics access-list
no threat-detection statistics tcp-intercept
webvpn
username admin password ************ encrypted privilege 15
!
!
prompt hostname context 
no call-home reporting anonymous
call-home
 profile CiscoTAC-1
&amp;nbsp; no active
&amp;nbsp; destination address http &lt;A href="https://tools.cisco.com/its/service/oddce/services/DDCEService" target="_blank"&gt;https://tools.cisco.com/its/service/oddce/services/DDCEService&lt;/A&gt;
&amp;nbsp; destination address email callhome@cisco.com
&amp;nbsp; destination transport-method http
&amp;nbsp; subscribe-to-alert-group diagnostic
&amp;nbsp; subscribe-to-alert-group environment
&amp;nbsp; subscribe-to-alert-group inventory periodic monthly
&amp;nbsp; subscribe-to-alert-group configuration periodic monthly
&amp;nbsp; subscribe-to-alert-group telemetry periodic daily
crashinfo save disable
Cryptochecksum: ******************
: end
asdm image disk0:/asdm-641.bin
no asdm history enable&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance for looking at my issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Mar 2013 20:26:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154901#M360162</guid>
      <dc:creator>cisco</dc:creator>
      <dc:date>2013-03-14T20:26:38Z</dc:date>
    </item>
    <item>
      <title>Re: ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154902#M360164</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;no, not on purpose, but my source is coming in from the inside interface (10.10.0.100, which is my virtual XP)?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm kinda noob on routing/firewalling as you have might expected &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when I do a trace from Inside to Outside all traffic seems to be forwarded, but from within my IE in XP no response.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Mar 2013 20:33:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154902#M360164</guid>
      <dc:creator>cisco</dc:creator>
      <dc:date>2013-03-14T20:33:07Z</dc:date>
    </item>
    <item>
      <title>ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154903#M360166</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please include the global inspection which includes DNS, you can try the following command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;clear config fixup&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NOTE: you can use the "Command line interface" option under tools on the ASDM. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Make sure your DNS settings are fine, for testing purpose you can use 4.2.2.2 as the primary DNS server. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Juan Lombana&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Mar 2013 20:38:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154903#M360166</guid>
      <dc:creator>julomban</dc:creator>
      <dc:date>2013-03-14T20:38:01Z</dc:date>
    </item>
    <item>
      <title>Re: ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154904#M360167</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Juan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the command you supplied gave no response. Changing my DNS in my Windows XP client gave the same result as my normal server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can ping all, but no response in my browser.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Mar 2013 21:27:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154904#M360167</guid>
      <dc:creator>cisco</dc:creator>
      <dc:date>2013-03-14T21:27:46Z</dc:date>
    </item>
    <item>
      <title>ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154905#M360168</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The fact that you can ping it means that you have Internet access, the problem is related to port HTTP or DNS. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is the default gateway on your Wondows XP? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Juan Lombana&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Mar 2013 21:34:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154905#M360168</guid>
      <dc:creator>julomban</dc:creator>
      <dc:date>2013-03-14T21:34:02Z</dc:date>
    </item>
    <item>
      <title>ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154906#M360169</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The problem might not be related to DNS since you can ping google using its name not the IP address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Make sure to have the inspection for HTTP traffic on the ASA. Also try to telnet to google on port 80 and see what happens.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have logs from the firewall?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Mar 2013 23:17:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154906#M360169</guid>
      <dc:creator>jocamare</dc:creator>
      <dc:date>2013-03-14T23:17:39Z</dc:date>
    </item>
    <item>
      <title>Re: ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154907#M360170</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope you are doing fine man..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So basically you are using GNS3 to test this .. GNS rocks man ( I have to agree on that ) but something things just done work as they should ( I was doing a lab today and everything was set as it should, interfaces up, Right IP address/Subnet masks,etc.. and after doing some troubleshooting they could not even ping each other and they were directly connected, so I reload the devices and started to work... So be careful here as this is a virtual enviroment.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would recommend you :&lt;/P&gt;&lt;P&gt;1) Save the configuration to memory ( If you do not how to do it on GNS3) Then copy and past it into a notepad and then put it back when the device boots again&lt;/P&gt;&lt;P&gt;2)&amp;nbsp; Try one more time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As you said this is a basic connectivity problems and I can ensure you that the configuration is good, &lt;/P&gt;&lt;P&gt;No need to have HTTP inspection on as the ASA is TCP stateful by default.. You should use HTTP inspection when you want to add a layer 7 deep packet inspection or at least check on the logs of the ASA what urls are being used by your internal users &lt;SPAN __jive_emoticon_name="grin" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/grin.gif"&gt;&lt;/SPAN&gt;. Cool...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Last but not least if this does not work as it should...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then it's time for captures&lt;/P&gt;&lt;P&gt;capture capin interface inside match tcp host x.x.x.x( Host source IP) host&amp;nbsp;&amp;nbsp; y.y.y.y (Web-server Ip address) eq 80&lt;/P&gt;&lt;P&gt;capture capout interface outside match tcp&amp;nbsp; host z.z.z.z( Outside Nat IP)&amp;nbsp; host y.y.y.y ( Webserver IP address) eq 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then try to connect once and share&lt;/P&gt;&lt;P&gt;Show cap capin&lt;/P&gt;&lt;P&gt;Show cap capout&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remember to rate all of the helpful posts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio carvajal segura&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Mar 2013 04:13:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154907#M360170</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2013-03-15T04:13:09Z</dc:date>
    </item>
    <item>
      <title>Re: ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154908#M360171</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Juan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;my default gateway is 10.10.0.254, but that's the good one, I would not be able to ping any site through its name.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My host Windows 7 has 192.168.2.3, my real router has 192.168.2.254, loopback has 192.168.137.1 (because of ICS).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can ping all of them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Jan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Mar 2013 08:29:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154908#M360171</guid>
      <dc:creator>cisco</dc:creator>
      <dc:date>2013-03-15T08:29:30Z</dc:date>
    </item>
    <item>
      <title>Re: ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154909#M360172</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm great thanks and you?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here's the output from the capin:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;ciscoasa# show cap capin&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;11 packets captured&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp; 1: 09:37:56.395884 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: S 416575389:416575389(0) win 65535 &lt;MSS 1260=""&gt;&lt;/MSS&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp; 2: 09:37:56.422204 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: R 1211360216:1211360216(0) win 0&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp; 3: 09:37:56.898055 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: R 1211360216:1211360216(0) win 0&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp; 4: 09:37:57.423363 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: R 1211360216:1211360216(0) win 0&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp; 5: 09:37:58.649426 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: R 1211360216:1211360216(0) win 0&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp; 6: 09:37:59.491292 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: S 416575389:416575389(0) win 65535 &lt;MSS 1260=""&gt;&lt;/MSS&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp; 7: 09:37:59.503727 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: R 1211360216:1211360216(0) win 0&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp; 8: 09:38:01.156623 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: R 1211360216:1211360216(0) win 0&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp; 9: 09:38:05.386332 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: S 416575389:416575389(0) win 65535 &lt;MSS 1260=""&gt;&lt;/MSS&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp; 10: 09:38:05.398966 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: R 1211360216:1211360216(0) win 0&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp; 11: 09:38:05.843996 10.10.0.100.1353 &amp;gt; 74.125.132.94.80: R 1211360216:1211360216(0) win 0&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;11 packets shown&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Which is my Outise NAT? Seen from the ASA, so 192.168.137.2?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or my real router? 192.168.2.254&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Mar 2013 08:44:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154909#M360172</guid>
      <dc:creator>cisco</dc:creator>
      <dc:date>2013-03-15T08:44:15Z</dc:date>
    </item>
    <item>
      <title>Re: ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154910#M360173</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi jocamare,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Telnet &lt;A href="https://community.cisco.com/www.google.nl" target="_blank"&gt;www.google.nl&lt;/A&gt; (or &lt;SPAN style="font-size: 10pt;"&gt;74.125.132.94) gives nothing. Even from my real host ?!&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;btw I tried this with Firewalls disabled on my real host and XP vm.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Jan&lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Mar 2013 08:56:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154910#M360173</guid>
      <dc:creator>cisco</dc:creator>
      <dc:date>2013-03-15T08:56:11Z</dc:date>
    </item>
    <item>
      <title>Re: ASA drops HTTP packets</title>
      <link>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154911#M360174</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As you are not running NAT it would be the same IP address 10.10.0.100,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So create the 2 captures using the same syntax, just a different interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio Carvajal &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Mar 2013 19:11:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-drops-http-packets/m-p/2154911#M360174</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2013-03-15T19:11:53Z</dc:date>
    </item>
  </channel>
</rss>

