<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA 8.2 Packet tracer syntax for outside traffic in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072539#M403200</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to ping outside users from inside hosts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;do nat (inside) 1 0 0 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then try it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;Remember to rate all of the post that help&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 19 Oct 2012 17:54:38 GMT</pubDate>
    <dc:creator>Julio Carvajal</dc:creator>
    <dc:date>2012-10-19T17:54:38Z</dc:date>
    <item>
      <title>ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072520#M403181</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what will be packet-tracer syntax to check if outside interface traffic is allowed to get to inside networks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mark&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 00:11:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072520#M403181</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2019-03-12T00:11:25Z</dc:date>
    </item>
    <item>
      <title>ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072521#M403182</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Packet-tracer input outside tcp/udp/icmp outside_host_ip 1025 (random port) internal_global_ip 80 (specific application port)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 17:55:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072521#M403182</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T17:55:17Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072522#M403183</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for your reply, it shows that it is blocked, I have attached config, please review to see what's missing, appreciate your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mark&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa# packet-tracer input outside tcp 10.170.0.5 1025 10.1.1.57 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 1&lt;/P&gt;&lt;P&gt;Type: ROUTE-LOOKUP&lt;/P&gt;&lt;P&gt;Subtype: input&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;in&amp;nbsp;&amp;nbsp; 10.1.1.57&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 2&lt;/P&gt;&lt;P&gt;Type: ACCESS-LIST&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: DROP&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Implicit Rule&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result:&lt;/P&gt;&lt;P&gt;input-interface: outside&lt;/P&gt;&lt;P&gt;input-status: up&lt;/P&gt;&lt;P&gt;input-line-status: up&lt;/P&gt;&lt;P&gt;output-interface: inside&lt;/P&gt;&lt;P&gt;output-status: up&lt;/P&gt;&lt;P&gt;output-line-status: up&lt;/P&gt;&lt;P&gt;Action: drop&lt;/P&gt;&lt;P&gt;Drop-reason: (acl-drop) Flow is denied by configured rule&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa#&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:02:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072522#M403183</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2012-10-18T19:02:04Z</dc:date>
    </item>
    <item>
      <title>ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072523#M403184</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please attach the config again&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:03:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072523#M403184</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T19:03:08Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072524#M403185</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;sorry, config attached&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:04:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072524#M403185</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2012-10-18T19:04:21Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072525#M403186</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp interface 80 10.1.1.57 80&lt;/P&gt;&lt;P&gt;access-group acl-outside in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then give it a try&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:11:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072525#M403186</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T19:11:26Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072526#M403187</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it failed, here is the output &amp;amp; configuration I added, access group doesn't show up in configuration:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp interface www 10.1.1.57 www netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa# int vlan 2&lt;/P&gt;&lt;P&gt;asa(config-if)# access-group acl-outside in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa# packet-tracer input outside tcp 10.170.0.5 1025 10.1.1.57 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 1&lt;/P&gt;&lt;P&gt;Type: ROUTE-LOOKUP&lt;/P&gt;&lt;P&gt;Subtype: input&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;in&amp;nbsp;&amp;nbsp; 10.1.1.57&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 2&lt;/P&gt;&lt;P&gt;Type: ACCESS-LIST&lt;/P&gt;&lt;P&gt;Subtype: log&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;access-group acl-outside in interface outside&lt;/P&gt;&lt;P&gt;access-list acl-outside extended permit ip 10.170.0.0 255.255.255.0 host 10.1.1.57&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 3&lt;/P&gt;&lt;P&gt;Type: IP-OPTIONS&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 4&lt;/P&gt;&lt;P&gt;Type: INSPECT&lt;/P&gt;&lt;P&gt;Subtype: np-inspect&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect http&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 5&lt;/P&gt;&lt;P&gt;Type: NAT&lt;/P&gt;&lt;P&gt;Subtype: rpf-check&lt;/P&gt;&lt;P&gt;Result: DROP&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp interface www 10.1.1.57 www netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&amp;nbsp; match tcp inside host 10.1.1.57 eq 80 outside any&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; static translation to 10.8.8.1/80&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result:&lt;/P&gt;&lt;P&gt;input-interface: outside&lt;/P&gt;&lt;P&gt;input-status: up&lt;/P&gt;&lt;P&gt;input-line-status: up&lt;/P&gt;&lt;P&gt;output-interface: inside&lt;/P&gt;&lt;P&gt;output-status: up&lt;/P&gt;&lt;P&gt;output-line-status: up&lt;/P&gt;&lt;P&gt;Action: drop&lt;/P&gt;&lt;P&gt;Drop-reason: (acl-drop) Flow is denied by configured rule&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mark&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:27:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072526#M403187</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2012-10-18T19:27:36Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072527#M403188</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Packet tracer syntax is wrong&lt;/P&gt;&lt;P&gt;Do the following&lt;/P&gt;&lt;P&gt;no route inside route inside 10.1.1.57 255.255.255.255 0.1.1.2 1&lt;/P&gt;&lt;P&gt;no route inside 10.1.1.0 255.255.255.0 10.1.1.2 1&lt;/P&gt;&lt;P&gt;Then &lt;/P&gt;&lt;P&gt;packet-tracer input outside tcp 10.170.0.5 1025 10.8.8.1 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remember to rate all of the helpful posts&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:38:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072527#M403188</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T19:38:16Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072528#M403189</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;won't let me add the route:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ERROR: Cannot add route, connected route exists&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;all outside traffic need to go that singl address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mark&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:56:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072528#M403189</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2012-10-18T19:56:28Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072529#M403190</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do not worry, actually I was trying to remove it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please run the packet tracer I sent &lt;/P&gt;&lt;P&gt;&lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;Remember to rate all of the helpful posts&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:59:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072529#M403190</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T19:59:32Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072530#M403191</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;here is the output, denied.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sa# packet-tracer input outside tcp 10.170.0.5 1025 10.8.8.1 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 1&lt;/P&gt;&lt;P&gt;Type: UN-NAT&lt;/P&gt;&lt;P&gt;Subtype: static&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp interface www 10.1.1.57 www netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&amp;nbsp; match tcp inside host 10.1.1.57 eq 80 outside any&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; static translation to 10.8.8.1/80&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 0, untranslate_hits = 3&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;NAT divert to egress interface inside&lt;/P&gt;&lt;P&gt;Untranslate 10.8.8.1/80 to 10.1.1.57/80 using netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 2&lt;/P&gt;&lt;P&gt;Type: ACCESS-LIST&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: DROP&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Implicit Rule&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result:&lt;/P&gt;&lt;P&gt;input-interface: outside&lt;/P&gt;&lt;P&gt;input-status: up&lt;/P&gt;&lt;P&gt;input-line-status: up&lt;/P&gt;&lt;P&gt;output-interface: inside&lt;/P&gt;&lt;P&gt;output-status: up&lt;/P&gt;&lt;P&gt;output-line-status: up&lt;/P&gt;&lt;P&gt;Action: drop&lt;/P&gt;&lt;P&gt;Drop-reason: (acl-drop) Flow is denied by configured rule&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mark&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 20:19:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072530#M403191</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2012-10-18T20:19:10Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072531#M403192</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Show run access-group&lt;/P&gt;&lt;P&gt;If nothing comes out add the following&lt;/P&gt;&lt;P&gt;access-group acl-outside in interface outside&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 21:24:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072531#M403192</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T21:24:15Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072532#M403193</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sorry for late reply, it shows up:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa# sh run access-group&lt;/P&gt;&lt;P&gt;access-group acl-outside in interface outside&lt;/P&gt;&lt;P&gt;asa#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mark&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 14:08:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072532#M403193</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2012-10-19T14:08:37Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072533#M403194</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That is weird, looks like we have all we need.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you share the updated configuration please?? So I can analize it&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 16:22:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072533#M403194</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-19T16:22:31Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072534#M403195</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Pleae see config attached, thank you for all your help. I can ping customer devices from firewall but not from 10.1.1.57.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mark&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 17:01:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072534#M403195</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2012-10-19T17:01:08Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072535#M403196</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I mean right now all we are testing is a HTTP connection to the 10.1.1.57 ( in this case pointing to the outside interface on port 80) from 10.170.0.5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list acl-outside extended permit ip 10.170.0.0 255.255.255.0 host 10.8.8.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That will do it,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 17:06:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072535#M403196</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-19T17:06:31Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072536#M403197</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it worked, still can't ping from 10.1.1.57&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa# packet-tracer input outside tcp 10.170.0.5 1025 10.8.8.1 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 1&lt;/P&gt;&lt;P&gt;Type: UN-NAT&lt;/P&gt;&lt;P&gt;Subtype: static&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp interface www 10.1.1.57 www netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&amp;nbsp; match tcp inside host 10.1.1.57 eq 80 outside any&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; static translation to 10.8.8.1/80&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 0, untranslate_hits = 4&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;NAT divert to egress interface inside&lt;/P&gt;&lt;P&gt;Untranslate 10.8.8.1/80 to 10.1.1.57/80 using netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 2&lt;/P&gt;&lt;P&gt;Type: ACCESS-LIST&lt;/P&gt;&lt;P&gt;Subtype: log&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;access-group acl-outside in interface outside&lt;/P&gt;&lt;P&gt;access-list acl-outside extended permit ip 10.170.0.0 255.255.255.0 host 10.8.8.1&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 3&lt;/P&gt;&lt;P&gt;Type: IP-OPTIONS&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 4&lt;/P&gt;&lt;P&gt;Type: INSPECT&lt;/P&gt;&lt;P&gt;Subtype: np-inspect&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect http&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 5&lt;/P&gt;&lt;P&gt;Type: NAT&lt;/P&gt;&lt;P&gt;Subtype: rpf-check&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp interface www 10.1.1.57 www netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&amp;nbsp; match tcp inside host 10.1.1.57 eq 80 outside any&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; static translation to 10.8.8.1/80&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 0, untranslate_hits = 4&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 6&lt;/P&gt;&lt;P&gt;Type: NAT&lt;/P&gt;&lt;P&gt;Subtype: host-limits&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp interface www 10.1.1.57 www netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&amp;nbsp; match tcp inside host 10.1.1.57 eq 80 outside any&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; static translation to 10.8.8.1/80&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; translate_hits = 0, untranslate_hits = 4&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 7&lt;/P&gt;&lt;P&gt;Type: IP-OPTIONS&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 8&lt;/P&gt;&lt;P&gt;Type: FLOW-CREATION&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;New flow created with id 545, packet dispatched to next module&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result:&lt;/P&gt;&lt;P&gt;input-interface: outside&lt;/P&gt;&lt;P&gt;input-status: up&lt;/P&gt;&lt;P&gt;input-line-status: up&lt;/P&gt;&lt;P&gt;output-interface: inside&lt;/P&gt;&lt;P&gt;output-status: up&lt;/P&gt;&lt;P&gt;output-line-status: up&lt;/P&gt;&lt;P&gt;Action: allow&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mark&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 17:16:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072536#M403197</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2012-10-19T17:16:25Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072537#M403198</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What do you mean by &lt;/P&gt;&lt;P&gt;still can't ping from 10.1.1.57&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What are you trying to do now??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remember to rate all of the post that help&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 17:34:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072537#M403198</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-19T17:34:23Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072538#M403199</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to access 10.170.0.5 &amp;amp; other IP's in outside-acl,&amp;nbsp; I can ping from firewall but not from 10.1.1.57.&lt;/P&gt;&lt;P&gt;This is the server which all remote devices in outside-acl will access. I can only ping 10.8.8.2 from 10.1.1.57.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mark&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 17:41:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072538#M403199</guid>
      <dc:creator>marktaylor47</dc:creator>
      <dc:date>2012-10-19T17:41:47Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 8.2 Packet tracer syntax for outside traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072539#M403200</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mark,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to ping outside users from inside hosts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;do nat (inside) 1 0 0 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then try it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;Remember to rate all of the post that help&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 17:54:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-packet-tracer-syntax-for-outside-traffic/m-p/2072539#M403200</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-19T17:54:38Z</dc:date>
    </item>
  </channel>
</rss>

