<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA 5505 - Single netwrok to internet in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063485#M438919</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Hasrat,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Okay, the other side of the tunnel will not make it as you do not have connectivity to the outside world.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please check the connection from your ASA to the default gateway router . &lt;/P&gt;&lt;P&gt;Can you paste the configuration from the default gateway of the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remember to rate the helpful posts&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 28 Aug 2012 18:29:46 GMT</pubDate>
    <dc:creator>Julio Carvajal</dc:creator>
    <dc:date>2012-08-28T18:29:46Z</dc:date>
    <item>
      <title>ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063478#M438912</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have configured an ASA 5505 to coonect a single internal network to internet, it is not working.&lt;/P&gt;&lt;P&gt;I have attached the config, please let me know what is missing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hasrat&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:46:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063478#M438912</guid>
      <dc:creator>Hasrat Raja</dc:creator>
      <dc:date>2019-03-11T23:46:17Z</dc:date>
    </item>
    <item>
      <title>ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063479#M438913</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Hasrat,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basic configuration, should be workin.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you ping 10.1.1.2 from the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Aug 2012 23:24:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063479#M438913</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-24T23:24:04Z</dc:date>
    </item>
    <item>
      <title>ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063480#M438914</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can ping 10.1.1.2, this router is managed by another company, they are not able to access devices on 10.4.3.0 network.&lt;/P&gt;&lt;P&gt;Do I need to make any changes to my config ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hasrat&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 26 Aug 2012 22:45:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063480#M438914</guid>
      <dc:creator>Hasrat Raja</dc:creator>
      <dc:date>2012-08-26T22:45:22Z</dc:date>
    </item>
    <item>
      <title>ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063481#M438915</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Hasrat,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good so there is connectivity between your ASA and the default-gateway.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Right now they should not be able to access your internal network as you have not created any rule or nat translation to make it happen.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The thing here is why are you not able to access the internet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have you 2 different test to try:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1- ping 4.2.2.2 from the asa&lt;/P&gt;&lt;P&gt;2- packet-tracer input inside tcp 10.4.3.20 1025 4.2.2.2 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Aug 2012 04:45:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063481#M438915</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-27T04:45:41Z</dc:date>
    </item>
    <item>
      <title>ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063482#M438916</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for the reply, I have following nat statement:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network Corporate_Internal&lt;/P&gt;&lt;P&gt; subnet 10.4.3.0 255.255.255.0&lt;SPAN id="mce_marker"&gt; &lt;/SPAN&gt;object network Corporate_Internal&lt;BR /&gt; &lt;/P&gt;&lt;P&gt;nat (inside,outside) source dynamic Corporate_Internal interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do I need to add something to it ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hasrat&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Aug 2012 16:58:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063482#M438916</guid>
      <dc:creator>Hasrat Raja</dc:creator>
      <dc:date>2012-08-27T16:58:27Z</dc:date>
    </item>
    <item>
      <title>ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063483#M438917</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Hasrat,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Based on that you did not answer my question I would say you can ping 4.2.2.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regarding the nat query, the configuration is perfect.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please do the packet tracer &lt;/P&gt;&lt;P&gt;packet-tracer input inside tcp 10.4.3.20 1025 4.2.2.2 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remember to rate all the helpful posts &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Aug 2012 19:48:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063483#M438917</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-27T19:48:53Z</dc:date>
    </item>
    <item>
      <title>ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063484#M438918</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry for the late response, I got the information that my device will not get internet access. My ASA is connecting to the VPN&amp;nbsp; router for other company which they will use to access our internal devices, they are not able to get to them, I have pasted packet tracer output below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;ASA# packet-tracer input inside tcp 10.4.3.20 1025 4.2.2.2 80&lt;/P&gt;&lt;P&gt;Phase: 1&lt;BR /&gt;Type: ACCESS-LIST&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Implicit Rule&lt;BR /&gt;Additional Information:&lt;BR /&gt;MAC Access list&lt;/P&gt;&lt;P&gt;Phase: 2&lt;BR /&gt;Type: ROUTE-LOOKUP&lt;BR /&gt;Subtype: input&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;BR /&gt;in&amp;nbsp;&amp;nbsp; 0.0.0.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0.0.0.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; outside&lt;/P&gt;&lt;P&gt;Phase: 3&lt;BR /&gt;Type: IP-OPTIONS&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;/P&gt;&lt;P&gt;Phase: 4&lt;BR /&gt;Type: INSPECT&lt;BR /&gt;Subtype: np-inspect&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;/P&gt;&lt;P&gt;Phase: 5&lt;BR /&gt;Type: NAT&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;nat (inside,outside) source dynamic Corporate_Internal interface&lt;BR /&gt;Additional Information:&lt;BR /&gt;Dynamic translate 10.4.3.20/1025 to 10.1.1.1/1025&lt;/P&gt;&lt;P&gt;Phase: 6&lt;BR /&gt;Type: HOST-LIMIT&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;/P&gt;&lt;P&gt;Phase: 7&lt;BR /&gt;Type: IP-OPTIONS&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;/P&gt;&lt;P&gt;Phase: 8&lt;BR /&gt;Type: FLOW-CREATION&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;BR /&gt;New flow created with id 41, packet dispatched to next module&lt;/P&gt;&lt;P&gt;Result:&lt;BR /&gt;input-interface: inside&lt;BR /&gt;input-status: up&lt;BR /&gt;input-line-status: up&lt;BR /&gt;output-interface: outside&lt;BR /&gt;output-status: up&lt;BR /&gt;output-line-status: up&lt;BR /&gt;Action: allow&lt;/P&gt;&lt;P&gt;ASA#&lt;BR /&gt;ASA#&lt;BR /&gt;ASA#&lt;BR /&gt;ASA# ping 4.2.2.2&lt;BR /&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 4.2.2.2, timeout is 2 seconds:&lt;BR /&gt;?????&lt;BR /&gt;Success rate is 0 percent (0/5)&lt;BR /&gt;ASA#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hasrat&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 28 Aug 2012 16:06:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063484#M438918</guid>
      <dc:creator>Hasrat Raja</dc:creator>
      <dc:date>2012-08-28T16:06:53Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063485#M438919</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Hasrat,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Okay, the other side of the tunnel will not make it as you do not have connectivity to the outside world.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please check the connection from your ASA to the default gateway router . &lt;/P&gt;&lt;P&gt;Can you paste the configuration from the default gateway of the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remember to rate the helpful posts&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 28 Aug 2012 18:29:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063485#M438919</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-28T18:29:46Z</dc:date>
    </item>
    <item>
      <title>ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063486#M438920</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't have access to VPN router.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hasrat&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 28 Aug 2012 20:05:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063486#M438920</guid>
      <dc:creator>Hasrat Raja</dc:creator>
      <dc:date>2012-08-28T20:05:04Z</dc:date>
    </item>
    <item>
      <title>ASA 5505 - Single netwrok to internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063487#M438921</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Hasrat,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you ping the vpn router from the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ping 10.1.1.2 1&lt;/P&gt;&lt;P&gt;ping 4.2.2.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What do you get?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;"Rate a post is also or even more importan than a thank you for the community users, remember to rate the helpful posts"&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Julio&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 28 Aug 2012 20:11:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-single-netwrok-to-internet/m-p/2063487#M438921</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-28T20:11:03Z</dc:date>
    </item>
  </channel>
</rss>

