<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic traceroute through ASA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/traceroute-through-asa/m-p/2077893#M395191</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The network structure of my company is :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Server ( 172.22.2.1 ) - HQ L3 switch ( 172.22.51.41 ) - ASA firewall ( route mode without NAT, 172.16.52.2 ) - WAN router ( 172.16.51.101 ) - Branch office L3 switch ( 172.16.6.254 ) - PC ( 172.16.6.250 )&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I tried to trace route from my PC, the result is :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;C:\Documents and Settings\yang&amp;gt;tracert -d 172.22.2.1&lt;/P&gt;&lt;P&gt;Tracing route to 172.22.2.1 over a maximum of 30 hops&lt;/P&gt;&lt;P&gt;&amp;nbsp; 1&amp;nbsp;&amp;nbsp;&amp;nbsp; 23 ms&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;1 ms&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;1 ms&amp;nbsp; 172.16.6.254&lt;BR /&gt;&amp;nbsp; 2&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2 ms&amp;nbsp; 172.16.51.101&lt;BR /&gt;&amp;nbsp; 3&amp;nbsp;&amp;nbsp;&amp;nbsp; 10 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp; 172.22.51.41&lt;BR /&gt;&amp;nbsp; 4&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp; 172.22.2.1&lt;/P&gt;&lt;P&gt;Trace complete.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The trace route result seems loss the ASA hop information. Please help to mention me what is the problem?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 00:27:25 GMT</pubDate>
    <dc:creator>jackson.ku</dc:creator>
    <dc:date>2019-03-12T00:27:25Z</dc:date>
    <item>
      <title>traceroute through ASA</title>
      <link>https://community.cisco.com/t5/network-security/traceroute-through-asa/m-p/2077893#M395191</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The network structure of my company is :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Server ( 172.22.2.1 ) - HQ L3 switch ( 172.22.51.41 ) - ASA firewall ( route mode without NAT, 172.16.52.2 ) - WAN router ( 172.16.51.101 ) - Branch office L3 switch ( 172.16.6.254 ) - PC ( 172.16.6.250 )&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I tried to trace route from my PC, the result is :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;C:\Documents and Settings\yang&amp;gt;tracert -d 172.22.2.1&lt;/P&gt;&lt;P&gt;Tracing route to 172.22.2.1 over a maximum of 30 hops&lt;/P&gt;&lt;P&gt;&amp;nbsp; 1&amp;nbsp;&amp;nbsp;&amp;nbsp; 23 ms&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;1 ms&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;1 ms&amp;nbsp; 172.16.6.254&lt;BR /&gt;&amp;nbsp; 2&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2 ms&amp;nbsp; 172.16.51.101&lt;BR /&gt;&amp;nbsp; 3&amp;nbsp;&amp;nbsp;&amp;nbsp; 10 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp; 172.22.51.41&lt;BR /&gt;&amp;nbsp; 4&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 9 ms&amp;nbsp; 172.22.2.1&lt;/P&gt;&lt;P&gt;Trace complete.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The trace route result seems loss the ASA hop information. Please help to mention me what is the problem?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 00:27:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/traceroute-through-asa/m-p/2077893#M395191</guid>
      <dc:creator>jackson.ku</dc:creator>
      <dc:date>2019-03-12T00:27:25Z</dc:date>
    </item>
    <item>
      <title>traceroute through ASA</title>
      <link>https://community.cisco.com/t5/network-security/traceroute-through-asa/m-p/2077894#M395192</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jackson,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;By default the ASA will not decrement the TTL value of an IP packet ( so it will be somehow transparent {Security Purposes}) but this can be changed by doing the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;configure te&lt;/P&gt;&lt;P&gt;&amp;nbsp; policy-map global_policy &lt;/P&gt;&lt;P&gt;&amp;nbsp; class class-default&lt;/P&gt;&lt;P&gt;&amp;nbsp; set connection decrement-ttl &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rate all of the helpful posts&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 23 Nov 2012 20:43:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/traceroute-through-asa/m-p/2077894#M395192</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-11-23T20:43:06Z</dc:date>
    </item>
    <item>
      <title>traceroute through ASA</title>
      <link>https://community.cisco.com/t5/network-security/traceroute-through-asa/m-p/2077895#M395193</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;in addition you need an access-list on outside interface :-&lt;/P&gt;&lt;P&gt;access-list outside permit udp any any gt 33434.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 25 Nov 2012 10:38:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/traceroute-through-asa/m-p/2077895#M395193</guid>
      <dc:creator>Riyasat Ali</dc:creator>
      <dc:date>2012-11-25T10:38:47Z</dc:date>
    </item>
  </channel>
</rss>

