<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: asa 5505 with two internal network in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5505-with-two-internal-network/m-p/1599864#M593657</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;EM&gt;access-list workstations permit ip &lt;WORKSTATION ip="" range=""&gt; any &lt;/WORKSTATION&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;access-list servers permit ip &lt;SERVER ip="" range=""&gt; any&lt;/SERVER&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;nat (inside_interface1) 1 access-list workstations&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;nat (inside_interface2) 2 access-list servers&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;global (internet_interface) 1 interface&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;global (internet_interface) 2 interface&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Where inside_interface1 is the name of the interface your workstations are behind.&lt;/P&gt;&lt;P&gt;Where inside_interface2 is the name of the interface your servers are behind.&lt;/P&gt;&lt;P&gt;Where internet_interface is the name of the interface the internet is connected via.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This solution infact uses interface overloading, i.e. PAT, which I think would be a better option.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 21 Jan 2011 10:52:37 GMT</pubDate>
    <dc:creator>handsy</dc:creator>
    <dc:date>2011-01-21T10:52:37Z</dc:date>
    <item>
      <title>asa 5505 with two internal network</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-with-two-internal-network/m-p/1599863#M593652</link>
      <description>&lt;P&gt;Could any expert here able to give me a hand ? I'm totally new on asa 5505, because of my previous one broken.&lt;/P&gt;&lt;P&gt;I would like to set this up with some static NAT rule located on 192.168.2.0 segment and two segment of internal network able to access Internet at the same time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;192.168.3.0 (workstations subnet)&lt;/P&gt;&lt;P&gt;Linksys WRT54G (router mode)&lt;/P&gt;&lt;P&gt;192.168.2.5&lt;/P&gt;&lt;P&gt;|&lt;/P&gt;&lt;P&gt;192.168.2.1 (servers subnet)&lt;/P&gt;&lt;P&gt;ASA 5505&lt;/P&gt;&lt;P&gt;113.28.102.68&lt;/P&gt;&lt;P&gt;|&lt;/P&gt;&lt;P&gt;113.28.102.70&lt;/P&gt;&lt;P&gt;gateway from ISP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help will be appreciated !&lt;/P&gt;&lt;P&gt;Thousand tks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:38:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-with-two-internal-network/m-p/1599863#M593652</guid>
      <dc:creator>patlam</dc:creator>
      <dc:date>2019-03-11T19:38:11Z</dc:date>
    </item>
    <item>
      <title>Re: asa 5505 with two internal network</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-with-two-internal-network/m-p/1599864#M593657</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;EM&gt;access-list workstations permit ip &lt;WORKSTATION ip="" range=""&gt; any &lt;/WORKSTATION&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;access-list servers permit ip &lt;SERVER ip="" range=""&gt; any&lt;/SERVER&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;nat (inside_interface1) 1 access-list workstations&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;nat (inside_interface2) 2 access-list servers&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;global (internet_interface) 1 interface&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;global (internet_interface) 2 interface&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Where inside_interface1 is the name of the interface your workstations are behind.&lt;/P&gt;&lt;P&gt;Where inside_interface2 is the name of the interface your servers are behind.&lt;/P&gt;&lt;P&gt;Where internet_interface is the name of the interface the internet is connected via.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This solution infact uses interface overloading, i.e. PAT, which I think would be a better option.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Jan 2011 10:52:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-with-two-internal-network/m-p/1599864#M593657</guid>
      <dc:creator>handsy</dc:creator>
      <dc:date>2011-01-21T10:52:37Z</dc:date>
    </item>
    <item>
      <title>Re: asa 5505 with two internal network</title>
      <link>https://community.cisco.com/t5/network-security/asa-5505-with-two-internal-network/m-p/1599865#M593664</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear handsy, thanks for your feedback.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are they (both workstations and servers subnet) able to communication each other while they are on different interface (bi-directional internal traffic) ?&lt;/P&gt;&lt;P&gt;like workstations accessing server using UNC path, web access, icmp, etc....&lt;/P&gt;&lt;P&gt;and some network printers exist on the workstations subnet which servers wanna get connected&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the other hand, the WRT54G is a wireless one, should I disable from there and the ASA itself to provide the lease ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Jan 2011 15:23:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5505-with-two-internal-network/m-p/1599865#M593664</guid>
      <dc:creator>patlam</dc:creator>
      <dc:date>2011-01-21T15:23:02Z</dc:date>
    </item>
  </channel>
</rss>

