<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA5510 multiple IP-ranges on interface Ethernet0/0 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541555#M616071</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the ASA is going to continue to use the same range on the outside and the inside then don't change the config.... you just want to have internal servers using the new range 88.88.88.x?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If so.. create the static NATs for the new range and permit the traffic with the outside ACL. &lt;/P&gt;&lt;P&gt;The trick to make this work is that the outside device (ISP) should have a route to 88.88.88.x pointing to the outside IP of the ASA 99.99.99.x&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 18 Nov 2010 14:46:16 GMT</pubDate>
    <dc:creator>Federico Coto Fajardo</dc:creator>
    <dc:date>2010-11-18T14:46:16Z</dc:date>
    <item>
      <title>ASA5510 multiple IP-ranges on interface Ethernet0/0</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541554#M616070</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have an ASA5510 with a couple of servers behind it, using NAT. The configuration of Ethernet0/0 is:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(using fake IP's)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; ip address 99.99.99.40 255.255.255.224&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The IP-range I can use is 99.99.99.40-62 (on the inside LAN I use 172.16.99.40-62), and they're all in use. Now the provider assigned me another range: 88.88.88.10-32. Is it possible to get this working together with the existing config? I would like the ASA to use the IP's like 88.88.88.40-62 on the outside interface, and use 172.16.99.10-32 on the inside...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am not sure how to do this, and since the ASA is production I would not like to just trial and error...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:11:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541554#M616070</guid>
      <dc:creator>Casperdegeus</dc:creator>
      <dc:date>2019-03-11T19:11:21Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5510 multiple IP-ranges on interface Ethernet0/0</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541555#M616071</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the ASA is going to continue to use the same range on the outside and the inside then don't change the config.... you just want to have internal servers using the new range 88.88.88.x?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If so.. create the static NATs for the new range and permit the traffic with the outside ACL. &lt;/P&gt;&lt;P&gt;The trick to make this work is that the outside device (ISP) should have a route to 88.88.88.x pointing to the outside IP of the ASA 99.99.99.x&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Nov 2010 14:46:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541555#M616071</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-11-18T14:46:16Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5510 multiple IP-ranges on interface Ethernet0/0</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541556#M616072</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No, its the other way around, I want to use the same ip range on the inside and use different ranges (88.88.88. and 99.99.99.) on the outside...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Nov 2010 21:57:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541556#M616072</guid>
      <dc:creator>Casperdegeus</dc:creator>
      <dc:date>2010-11-18T21:57:48Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5510 multiple IP-ranges on interface Ethernet0/0</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541557#M616073</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You cannot map a single internal IP to more than one external IPs... unless running 8.3.x code.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Nov 2010 22:08:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541557#M616073</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-11-18T22:08:53Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5510 multiple IP-ranges on interface Ethernet0/0</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541558#M616074</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm afraid I am not clear in what I need, but its difficult for me since i am a newbe. I dont want to map one internal ip to more than one external ip's, i just want to use two different ranges on the outside...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Nov 2010 22:16:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541558#M616074</guid>
      <dc:creator>Casperdegeus</dc:creator>
      <dc:date>2010-11-18T22:16:36Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5510 multiple IP-ranges on interface Ethernet0/0</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541559#M616075</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So, to use two different ranges in the outside... is the first answer that I gave you&amp;nbsp; &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;One range will be assigned to the outside interface of the ASA (no problem here).&lt;/P&gt;&lt;P&gt;The other range will have no interface IP, so you need a route back from the ISP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Nov 2010 22:21:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541559#M616075</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-11-18T22:21:51Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5510 multiple IP-ranges on interface Ethernet0/0</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541560#M616076</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You were right, it works. I'm so sorry for being such a noob.&amp;nbsp; Many thanks man!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Nov 2010 18:01:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541560#M616076</guid>
      <dc:creator>Casperdegeus</dc:creator>
      <dc:date>2010-11-19T18:01:12Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5510 multiple IP-ranges on interface Ethernet0/0</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541561#M616077</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No problem, I'm glad I could help &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the rating!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Nov 2010 18:13:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-multiple-ip-ranges-on-interface-ethernet0-0/m-p/1541561#M616077</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-11-19T18:13:24Z</dc:date>
    </item>
  </channel>
</rss>

