<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Please Respond Immediately in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661833#M560509</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, correct but can someone tell me what is a use of this commands in details and when i turned on this commands then I need to make a access list on outside interface of firewall to allow the traffic from our router IP Address IP to any traffic then the communication works where I am confused, why?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 16 Jun 2011 19:36:22 GMT</pubDate>
    <dc:creator>ray_stone</dc:creator>
    <dc:date>2011-06-16T19:36:22Z</dc:date>
    <item>
      <title>Please Respond Immediately</title>
      <link>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661830#M560506</link>
      <description>&lt;P&gt;Hello Experts:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have one ASA and one router conected with unmanaged switch and the same switch is connected with ISP router. The ISP router, our router and ASA outside interface has Public IP Address configured as follow:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1)&amp;nbsp; ASA outide : 1.1.1.1/24&lt;/P&gt;&lt;P&gt;2) Our Router&amp;nbsp; : 1.1.1.2/24&lt;/P&gt;&lt;P&gt;3) ISP router&amp;nbsp;&amp;nbsp; : 1.1.1.3/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Our router, the route is added to point the firewall IP 1.1.1.1 and on ASA a route is added of ISP router 1.1.1.3. Now traffic should go like that---- our router ---- ASA----- ISP router.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is a STS tunnel created on our router with external partner which traffic i can see hitting on ASA firewall but it's being denied "1.1.1.2 upd/500 and destination is external partner IP Address, outside interface"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now we want that ASA bypass the traffic of our router to ISP router which is not being done and your help is required.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please help!&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:46:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661830#M560506</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2019-03-11T20:46:25Z</dc:date>
    </item>
    <item>
      <title>Please Respond Immediately</title>
      <link>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661831#M560507</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Iam not much familiar with this kind of setup, but on ASA make sure 'same-security permit intra-interface &amp;amp; same-security permit inter-interface'&amp;nbsp; enabled.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hth&lt;/P&gt;&lt;P&gt;MS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Jun 2011 19:19:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661831#M560507</guid>
      <dc:creator>mvsheik123</dc:creator>
      <dc:date>2011-06-16T19:19:34Z</dc:date>
    </item>
    <item>
      <title>Please Respond Immediately</title>
      <link>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661832#M560508</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You need to permit UDP 500 on your ASA''s outside interface, if I correctly understand your network diagram. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Jun 2011 19:36:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661832#M560508</guid>
      <dc:creator>fgasimzade</dc:creator>
      <dc:date>2011-06-16T19:36:10Z</dc:date>
    </item>
    <item>
      <title>Please Respond Immediately</title>
      <link>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661833#M560509</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, correct but can someone tell me what is a use of this commands in details and when i turned on this commands then I need to make a access list on outside interface of firewall to allow the traffic from our router IP Address IP to any traffic then the communication works where I am confused, why?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Jun 2011 19:36:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661833#M560509</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2011-06-16T19:36:22Z</dc:date>
    </item>
    <item>
      <title>Please Respond Immediately</title>
      <link>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661834#M560510</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Why, even the route is placed on firewall and if we use the router instead of firewall then do we still need to make a access list to allow the UPD traffic, if not then what is a diference here between router and firewall conf?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Jun 2011 19:38:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661834#M560510</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2011-06-16T19:38:01Z</dc:date>
    </item>
    <item>
      <title>Please Respond Immediately</title>
      <link>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661835#M560511</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No, there is no need for access-list if you use only router. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On ASA, you need to permit traffic, if it comes to outside interface. ASA is not a router, it is a firewall with routing capabilities&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Jun 2011 19:41:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/please-respond-immediately/m-p/1661835#M560511</guid>
      <dc:creator>fgasimzade</dc:creator>
      <dc:date>2011-06-16T19:41:16Z</dc:date>
    </item>
  </channel>
</rss>

