<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Natting in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/natting/m-p/1455018#M697067</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI NT,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a Router 1841 that is given by ISP to terminate the link and they handle this router their self. I have rebooted that router. but after that I am again not able to access old IP series. I mean when I create a nat route from local to Live ip. this does not work. Please help ..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Amardeep Rana&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 05 Aug 2010 11:06:28 GMT</pubDate>
    <dc:creator>Amardeep Kumar</dc:creator>
    <dc:date>2010-08-05T11:06:28Z</dc:date>
    <item>
      <title>Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1454998#M696943</link>
      <description>&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; HI&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want to configure two natting statment with my sinlge local IP for my mail Server. Is it possible to create another router with same local ip for another extenal IP. I am using ASA 5505.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Right now I have&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.49 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;static (inside,outside) yyy.yyy.yyy.yyy&amp;nbsp; 192.168.12.49 netmask 255.255.255.255&amp;nbsp; ( I want to do like this)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Amardeep Rana&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 18:18:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1454998#M696943</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2019-03-11T18:18:01Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1454999#M696952</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No. I think it will complain about duplicate entries to the first static when u try to enter the second static command.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:01:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1454999#M696952</guid>
      <dc:creator>rahgovin</dc:creator>
      <dc:date>2010-07-29T12:01:15Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455000#M696964</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;this will not be possible you can map ports if you have specific example&lt;/P&gt;&lt;P&gt;for example&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) tcp xxx.xxx.xxx.xxx 25 192.168.12.49 25 netmask 255.255.255.255&lt;BR /&gt;static (inside,outside) tcp yyy.yyy.yyy.yyy&amp;nbsp; 22 192.168.12.49 22 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;but just curious, wouldnt your server complain of ip conflict in your internal network as 2 devices have the same ip&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:18:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455000#M696964</guid>
      <dc:creator>Jitendriya Athavale</dc:creator>
      <dc:date>2010-07-29T12:18:50Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455001#M696973</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have only one server with local ip of 192.168.12.49. But I want to create two nat route with this and I get the error of&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 10pt; color: #333333; font-family: 'Arial','sans-serif';"&gt;duplicity.. &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 10pt; color: #333333; font-family: 'Arial','sans-serif';"&gt;Thanks &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 10pt; color: #333333; font-family: 'Arial','sans-serif';"&gt;Amardeep Rana&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:25:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455001#M696973</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2010-07-29T12:25:02Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455002#M696985</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes , You are right , this is giving me same error og duplcity.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So you mean , I am not able to map single local IP to my another two external IP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any Idea , I can do it..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Amardeep Rana&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:26:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455002#M696985</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2010-07-29T12:26:38Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455003#M696999</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;as i said the only option is static pat wherein you can map specific ports&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the reason is simple when the server is sending a packet out it will not know which public ip to use&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can you elaborate more on what service this host is running&lt;/P&gt;&lt;P&gt;whether the 2 ip's need to be translated on the same interface&lt;/P&gt;&lt;P&gt;why exactly do you need to translate it to 2 ip's unless the server is running 2 services&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:30:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455003#M696999</guid>
      <dc:creator>Jitendriya Athavale</dc:creator>
      <dc:date>2010-07-29T12:30:43Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455004#M697007</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #333333;"&gt;HI &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is my mail server.And I want to put it up everytime. Some time what happens my primary ISP goes down so I have to roll over on Backup iSP. So I want to map the same server on two ISP external IP. So that server can be up everytime.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Amardeep Rana&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:38:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455004#M697007</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2010-07-29T12:38:44Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455005#M697017</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can use policy-nat.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list PNAT1 permit ip host 192.168.12.49 any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list PNAT2 permit ip host 192.168.12.49 any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) xxx.xxx.xxx.xxx access-list PNAT1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) yyy.yyy.yyy.yyy access-list PNAT2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00807d2874.shtml"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00807d2874.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NT&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:41:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455005#M697017</guid>
      <dc:creator>Nagaraja Thanthry</dc:creator>
      <dc:date>2010-07-29T12:41:13Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455006#M697024</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are both your ISP's connected to same outside interface? If yes, my earlier&lt;/P&gt;&lt;P&gt;post has the configuration example that will achieve what you are looking&lt;/P&gt;&lt;P&gt;for. If they are on different interface of the firewall, then you need not&lt;/P&gt;&lt;P&gt;have to worry about duplicate entries and just configure normal static NAT.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,ISP1) xxx.xxx.xxx.xxx 192.168.12.49 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,ISP2) yyy.yyy.yyy.yyy 192.168.12.49 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The firewall will choose the static based on the outgoing interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NT&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:47:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455006#M697024</guid>
      <dc:creator>Nagaraja Thanthry</dc:creator>
      <dc:date>2010-07-29T12:47:17Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455007#M697030</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;if you have 2 isp's then i would assume you have 2 interfaces as well connected to internet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.biz/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00806e880b.shtml"&gt;http://www.cisco.biz/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00806e880b.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the above doc shows how the ideal scenario is for dual isp&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:47:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455007#M697030</guid>
      <dc:creator>Jitendriya Athavale</dc:creator>
      <dc:date>2010-07-29T12:47:54Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455008#M697044</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me try with this configration. I will update it soon.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Amardeep Rana&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Jul 2010 12:52:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455008#M697044</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2010-07-29T12:52:54Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455009#M697045</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI &lt;SPAN style="mso-bidi-language: AR-SA; mso-fareast-language: EN-US; : ; mso-bidi-font-family: 'Times New Roman'; sans-serif&amp;quot;: ; mso-ascii-theme-font: minor-latin; ,&amp;quot;: ; color: #000000; font-size: 11pt; mso-hansi-theme-font: minor-latin; mso-ansi-language: EN-US; font-family: &amp;quot; mso-fareast-theme-font: minor-latin; mso-fareast-font-family: Calibri; mso-bidi-theme-font: minor-bidi; Calibri&amp;quot;: ; "&gt;Nagaraja Thanthry,,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="mso-bidi-language: AR-SA; mso-fareast-language: EN-US; : ; mso-bidi-font-family: 'Times New Roman'; sans-serif&amp;quot;: ; mso-ascii-theme-font: minor-latin; ,&amp;quot;: ; color: #000000; font-size: 11pt; mso-hansi-theme-font: minor-latin; mso-ansi-language: EN-US; font-family: &amp;quot; mso-fareast-theme-font: minor-latin; mso-fareast-font-family: Calibri; mso-bidi-theme-font: minor-bidi; Calibri&amp;quot;: ; "&gt;I think your answer worked for me and I was able to make two route. But As I created second route, My internet stop working. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 11pt; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ascii-theme-font: minor-latin; mso-fareast-font-family: Calibri; mso-fareast-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-font-family: 'Times New Roman'; mso-bidi-theme-font: minor-bidi; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA;"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 12pt; color: #000000; font-family: Consolas;"&gt;static (inside,ISP2) yyy.yyy.yyy.yyy 192.168.12.49 netmask 255.255.255.255 , As I put this command, My first entry stop working, Internet was not working on the same server which IP I am using for two routes. To resolve the issue I have to remove both of the entry from ASA and map another IP to my mail server and after it start running. 192.168.12.49 server stop &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;running after my sesond static command.&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri;"&gt;I tried clear xlate but in vain. &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri;"&gt;Please suggest&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri;"&gt;Thanks &lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 08:32:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455009#M697045</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2010-07-30T08:32:33Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455010#M697048</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="text-decoration: line-through;"&gt;HI &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a A records on Godaddy for my some of the servers. I have created natting lcoal IP to external IP and I access those servers via Name. What I have made some change on ASA 5505 after that none of the IP was pinging outside. I have to change all of my static routes to different IPs. after they are runnging. Is there any issue second ISP router can create. What is roll of Xlate . Please suggest , I dont have much IP in my Pool. Please help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Amardeep K&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 14:07:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455010#M697048</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2010-07-30T14:07:36Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455011#M697053</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you please post the output of "show run interface", "show run static", and "show run route" here? You can sanitize your IP addresses if you like.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NT&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 14:14:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455011#M697053</guid>
      <dc:creator>Nagaraja Thanthry</dc:creator>
      <dc:date>2010-07-30T14:14:02Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455012#M697055</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Output of these three Commands&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;ciscoasa(config)# sh run interface&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Vlan1&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;&lt;SPAN style="mso-spacerun: yes;"&gt; &lt;/SPAN&gt;nameif inside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;&lt;SPAN style="mso-spacerun: yes;"&gt; &lt;/SPAN&gt;security-level 100&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;&lt;SPAN style="mso-spacerun: yes;"&gt; &lt;/SPAN&gt;ip address Local IP 255.255.254.0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Vlan2&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;&lt;SPAN style="mso-spacerun: yes;"&gt; &lt;/SPAN&gt;nameif outside&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;&lt;SPAN style="mso-spacerun: yes;"&gt; &lt;/SPAN&gt;security-level 0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;&lt;SPAN style="mso-spacerun: yes;"&gt; &lt;/SPAN&gt;ip address Extrenal 255.255.255.224&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Ethernet0/0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;&lt;SPAN style="mso-spacerun: yes;"&gt; &lt;/SPAN&gt;switchport access vlan 2&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Ethernet0/1&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Ethernet0/2&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;&lt;SPAN style="mso-spacerun: yes;"&gt; &lt;/SPAN&gt;switchport access vlan 3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Ethernet0/3&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Ethernet0/4&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Ethernet0/5&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Ethernet0/6&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;interface Ethernet0/7&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;&lt;SPAN style="mso-spacerun: yes;"&gt; &lt;/SPAN&gt;switchport access vlan 22&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 12pt; color: #000000; font-family: Calibri;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;sh run static&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 12pt; color: #000000; font-family: Calibri;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.62 netmask 255.255.255.255&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.59 netmask 255.255.255.255&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.100 netmask 255.255.255.255&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.41 netmask 255.255.255.255&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.49 netmask 255.255.255.255&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;static (inside,outside) xxx.xxx.xxx.xxx exchange01 netmask 255.255.255.255&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.65 netmask 255.255.255.255&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.19 netmask 255.255.255.255&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-family: Calibri; "&gt;&lt;SPAN style="font-size: 12pt;"&gt;( I have to recreate all static again , AS I was not able to access them after Daul ISP setup Or after putting this command &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 12pt; font-family: Consolas;"&gt;static (inside,ISP2) yyy.yyy.yyy.yyy 192.168.12.49 netmask 255.255.255.255.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 12pt; color: #000000; font-family: Calibri;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;show run route &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="color: #000000; font-size: 12pt; font-family: Calibri; "&gt;route outside 0.0.0.0 0.0.0.0 xxx.xxx.xxx.xxx 1 track 1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Amardeep Rana&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 14:23:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455012#M697055</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2010-07-30T14:23:06Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455013#M697057</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Did you have another interface (Vlan 22) named ISP2? Did you by any chance&lt;/P&gt;&lt;P&gt;used "backup-interface" configuration on the firewall? Can you please post&lt;/P&gt;&lt;P&gt;the configuration with the second ISP interface here?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NT&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 14:32:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455013#M697057</guid>
      <dc:creator>Nagaraja Thanthry</dc:creator>
      <dc:date>2010-07-30T14:32:09Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455014#M697058</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have used this config but As I got issue I rebooted my ASA .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;ASA5505(config)# interface ethernet 0/0&lt;BR /&gt;ASA5505(config-if)# switchport access vlan 2&lt;BR /&gt;ASA5505(config-if)# no shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;ASA5505(config)# interface ethernet 0/1&lt;BR /&gt;ASA5505(config-if)# switchport access vlan 1&lt;BR /&gt;ASA5505(config-if)# no shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;ASA5505(config)# interface ethernet 0/2&lt;BR /&gt;ASA5505(config-if)# switchport access vlan 3&lt;BR /&gt;ASA5505(config-if)# no shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;ASA5505(config)# interface vlan 1&lt;BR /&gt;ASA5505(config-if)# nameif inside&lt;BR /&gt;ASA5505(config-if)# security-level 100&lt;BR /&gt;ASA5505(config-if)# ip address 192.168.1.1 255.255.255.0&lt;BR /&gt;ASA5505(config-if)# no shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;ASA5505(config)# interface vlan 2&lt;BR /&gt;ASA5505(config-if)# nameif primary-isp&lt;BR /&gt;ASA5505(config-if)# security-level 0&lt;BR /&gt;ASA5505(config-if)# ip address Primary ISP Exteral IP 255.255.255.0&lt;BR /&gt;ASA5505(config-if)# backup interface vlan 3&lt;BR /&gt;ASA5505(config-if)# no shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;ASA5505(config)# interface vlan 3&lt;BR /&gt;ASA5505(config-if)# nameif backup-isp&lt;BR /&gt;ASA5505(config-if)# security-level 1&lt;BR /&gt;ASA5505(config-if)# ip address Backup Isp 2 255.255.255.0&lt;BR /&gt;ASA5505(config-if)# no shutdown&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;ASA5505(config)# route primary-isp 0.0.0.0 0.0.0.0 Primary ISP Exteral IP 1&lt;BR /&gt;ASA5505(config)# route backup-isp 0.0.0.0 0.0.0.0 Backup&amp;nbsp;&amp;nbsp;&amp;nbsp; (Isp )&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;Check also&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;nat (inside) 1 192.168.1.0 255.255.255.0&lt;BR /&gt;nat (inside) 1 0.0.0.0 0.0.0.0&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;route outside 0.0.0.0 0.0.0.0 xxx.xxx.xxx.xxx 1 track 1&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;route backup-isp 0.0.0.0 0.0.0.0 xxx.xxx.xxx.xxx&amp;nbsp; 2&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;global (backupisp) 1 interface&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; access-group 10 in interface backupisp&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;Finally I put this command &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="background: #f4f3f3; margin: 0in 0in 0pt;"&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;SPAN lang="EN" style="font-size: 9pt; color: #333333; font-family: &amp;quot;Arial&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN; mso-fareast-font-family: 'Times New Roman';"&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 12pt; color: #000000; font-family: Consolas;"&gt;static (inside,backup-isp) yyy.yyy.yyy.yyy 192.168.12.49 netmask 255.255.255.255&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 12pt; color: #000000; font-family: Consolas;"&gt;Thanks &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoPlainText" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-size: 12pt; color: #000000; font-family: Consolas;"&gt;Amardeep K &lt;/SPAN&gt;&lt;/P&gt;&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 14:44:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455014#M697058</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2010-07-30T14:44:09Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455015#M697059</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I see that there are no NAT rules for the primary interface in your&lt;/P&gt;&lt;P&gt;configuration. Let's try the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA5505(config)# interface ethernet 0/0&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# switchport access vlan 2 &lt;/P&gt;&lt;P&gt;ASA5505(config-if)# no shutdown&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;ASA5505(config)# interface ethernet 0/1&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# switchport access vlan 1 &lt;/P&gt;&lt;P&gt;ASA5505(config-if)# no shutdown&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;ASA5505(config)# interface ethernet 0/2&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# switchport access vlan 3 &lt;/P&gt;&lt;P&gt;ASA5505(config-if)# no shutdown&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;ASA5505(config)# interface vlan 1&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# nameif inside&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# security-level 100&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# ip address 192.168.1.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;ASA5505(config-if)# no shutdown&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;ASA5505(config)# interface vlan 2&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# nameif primary-isp&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# security-level 0&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# ip address Primary ISP Exteral IP 255.255.255.0&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# no backup interface vlan 3&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 16:34:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455015#M697059</guid>
      <dc:creator>Nagaraja Thanthry</dc:creator>
      <dc:date>2010-07-30T16:34:09Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455016#M697060</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi NJ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will try your Configration in off hours. But please explain it. last command. When there is not Vlan 3 in my config.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA5505(config)# interface vlan 2&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# nameif primary-isp&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# security-level 0&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# ip address Primary ISP Exteral IP 255.255.255.0&lt;/P&gt;&lt;P&gt;ASA5505(config-if)# &lt;STRONG style="text-decoration: line-through; "&gt;no backup interface vlan 3&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;SPAN style="text-decoration: line-through;"&gt;H&lt;/SPAN&gt;ere I want to know that &lt;/STRONG&gt;what will be the reason I had to change all the static routes. and new records are running ,&lt;/P&gt;&lt;P&gt;Suppose I had below static before.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.56 netmask 255.255.255.2&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ( This was running before , I setup for Daul ISP)&lt;BR /&gt;static (inside,outside) xxx.xxx.xxx.xxx 192.168.12.77 netmask 255.255.255.2&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (( This was running before , I setup for Daul ISP)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But I did not saving anthing on ASA and reboot it. After reboot both of uper static did not run. I tried xlate. But.....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then I have to create new static and then I was able to access with new IP.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;static (inside,outside) yyy.yyy.yyy.yyy 192.168.12.56 netmask 255.255.255.2&amp;nbsp; &lt;BR /&gt;static (inside,outside) yyy.yyy.yyy.yyy 192.168.12.77 netmask 255.255.255.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Amardeep Rana&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 17:03:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455016#M697060</guid>
      <dc:creator>Amardeep Kumar</dc:creator>
      <dc:date>2010-07-30T17:03:28Z</dc:date>
    </item>
    <item>
      <title>Re: Natting</title>
      <link>https://community.cisco.com/t5/network-security/natting/m-p/1455017#M697063</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The issue could be that the ISP router had wrong ARP entry for those IP&lt;/P&gt;&lt;P&gt;addresses. You might want to reboot your ISP router (or talk to them and&lt;/P&gt;&lt;P&gt;have them flush their ARP cache). &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NT&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 17:16:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/natting/m-p/1455017#M697063</guid>
      <dc:creator>Nagaraja Thanthry</dc:creator>
      <dc:date>2010-07-30T17:16:11Z</dc:date>
    </item>
  </channel>
</rss>

