<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Second internal interface ASA 5510 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947936#M435919</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nat (inside_2) 1 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If that does not do it please share the running configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rate all the posts that help&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 24 May 2012 23:30:31 GMT</pubDate>
    <dc:creator>Julio Carvajal</dc:creator>
    <dc:date>2012-05-24T23:30:31Z</dc:date>
    <item>
      <title>Second internal interface ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947935#M435918</link>
      <description>&lt;P&gt;I am trying to setup a second internal network using interface 0/2 on the ASA.&amp;nbsp; Basically, where I am at now is:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;INTERFACE ETHERNET0/0&lt;/P&gt;&lt;P&gt;nameif outside&lt;/P&gt;&lt;P&gt;security-level 0&lt;/P&gt;&lt;P&gt;ip address x.x.x.130 255.255.255.128&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;INTERFACE ETHERNET0/1&lt;/P&gt;&lt;P&gt;nameif inside&lt;/P&gt;&lt;P&gt;security-level 100&lt;/P&gt;&lt;P&gt;ip address 10.185.10.11 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;INTERFACE ETHERNET0/2&lt;/P&gt;&lt;P&gt;nameif &lt;STRONG&gt;inside_2&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;security-level 100&lt;/P&gt;&lt;P&gt;ip address 192.168.10.10 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a switch coming off of this second interface of the ASA and a client with a static ip of 192.168.10.30.&lt;/P&gt;&lt;P&gt;I am not sure what I need to do for NAT on this second interface, I am assuming this is my only issue not being able to get out on the internet.&amp;nbsp; Anybody have any idea how to set this up.&amp;nbsp; Natting works just find on our 10.185.10.x network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks, Bob&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:11:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947935#M435918</guid>
      <dc:creator>swappedsr</dc:creator>
      <dc:date>2019-03-11T23:11:20Z</dc:date>
    </item>
    <item>
      <title>Second internal interface ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947936#M435919</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nat (inside_2) 1 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If that does not do it please share the running configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rate all the posts that help&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 24 May 2012 23:30:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947936#M435919</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-05-24T23:30:31Z</dc:date>
    </item>
    <item>
      <title>Re: Second internal interface ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947937#M435920</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sounds good, can you explain what that means exactly, the 1 0 0 part.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the prompt response!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, I assume since these two internal networks are at the same security level, by default, they won't be able to contact each other, correct?&amp;nbsp; I actually want it so they cannot reach each other.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 24 May 2012 23:47:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947937#M435920</guid>
      <dc:creator>swappedsr</dc:creator>
      <dc:date>2012-05-24T23:47:26Z</dc:date>
    </item>
    <item>
      <title>Re: Second internal interface ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947938#M435921</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Its saying please nat everything behind the Inside2 interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 May 2012 00:08:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947938#M435921</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-05-25T00:08:36Z</dc:date>
    </item>
    <item>
      <title>Re: Second internal interface ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947939#M435922</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio, everything works.&amp;nbsp; The only thing I change was from group 1 to 10.&amp;nbsp; 10 is the group we are using for the global NAT range.&amp;nbsp; Everything worked after that.&amp;nbsp; Now, one last thing, I am assuming there will be no communication between the two internal networks because they are at the same security level, how could if I needed too, have these networks communicate to each other.&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 May 2012 15:03:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947939#M435922</guid>
      <dc:creator>swappedsr</dc:creator>
      <dc:date>2012-05-25T15:03:38Z</dc:date>
    </item>
    <item>
      <title>Re: Second internal interface ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947940#M435923</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In order to do that you will need the following command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;same-security-traffic permit inter-interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;global (inside2) 10 interface&lt;/P&gt;&lt;P&gt;global (inside1) 10 interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do rate all the posts that help &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Security Engineer&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 May 2012 23:42:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947940#M435923</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-05-25T23:42:55Z</dc:date>
    </item>
    <item>
      <title>Re: Second internal interface ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947941#M435924</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey Julio thanks for the help! Can you explain what the global (inside2) 10 interface means?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 May 2012 00:51:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947941#M435924</guid>
      <dc:creator>swappedsr</dc:creator>
      <dc:date>2012-05-31T00:51:00Z</dc:date>
    </item>
    <item>
      <title>Re: Second internal interface ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947942#M435925</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When NAT control is enabled the traffic will hit a nat statement, then we need to have a global.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That is the purpose of the global in here.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is everything working as expected now??&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 May 2012 04:27:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/second-internal-interface-asa-5510/m-p/1947942#M435925</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-05-31T04:27:02Z</dc:date>
    </item>
  </channel>
</rss>

