<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CISCO ASA 5520 configuration doesn't working in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359973#M728237</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;Not working&lt;/SPAN&gt;&lt;SPAN __jive_emoticon_name="sad" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/sad.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 22 Mar 2010 12:19:10 GMT</pubDate>
    <dc:creator>r3linquish3d</dc:creator>
    <dc:date>2010-03-22T12:19:10Z</dc:date>
    <item>
      <title>CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359961#M728203</link>
      <description>&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/legacy/9/7/3/3379-net_diagram.JPG" alt="net_diagram.JPG" class="jive-image-thumbnail jive-image" height="355" onclick="" width="694" /&gt;&lt;/P&gt;&lt;P&gt;My Objectives:&lt;/P&gt;&lt;OL style="list-style-type: decimal;"&gt;&lt;LI&gt;INSIDE&amp;nbsp; can access OFFICE (mail, billing, application, dns) and&amp;nbsp; INTERNET&lt;/LI&gt;&lt;LI&gt;DMZ can communicate with OFFICE and INTERNET&lt;/LI&gt;&lt;LI&gt;INSIDE and DMZ can access each other (all permissive)&lt;/LI&gt;&lt;LI&gt;OFFICE can access DMZ especially http (e.g websvr ip is 192.169.109.15)&lt;BR /&gt;&lt;/LI&gt;&lt;LI&gt;OFFICE can access INSIDE's web (mrtgsvr IP is 192.168.107.29)&lt;/LI&gt;&lt;LI&gt;OFFICE can pool snmp and WMI information from DMZ and INSIDE.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have attached my current config file but it wasn't working. Using this configuration OFFICE and INTERNET is not reachable, not even the router 10.11.10.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can anyone help me out there to config my ASA properly according my objectives?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in Advance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;r3linquish3d&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 17:23:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359961#M728203</guid>
      <dc:creator>r3linquish3d</dc:creator>
      <dc:date>2019-03-11T17:23:53Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359962#M728206</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If no translation is required, you can configure "no nat-control".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For traffic from low security level to high security level, you would need to have static translation configured, and it works bidirectionally:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) 192.168.107.0 192.168.107.0 netmask 255.255.255.0&lt;/P&gt;&lt;P&gt;static (dmz,outside) 192.168.109.0 192.168.109.0 netmask 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is assuming that the office ASA firewall is configured correctly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you would like to ping through the ASA, you would also need to add the following:&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; inspect icmp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hopefully the above should allow most of your objectives to work.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Mar 2010 04:44:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359962#M728206</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-03-20T04:44:28Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359963#M728212</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello &lt;A class="jiveTT-hover-user&amp;nbsp; jive-username-link" href="https://community.cisco.com/people/halijenn" id="jive-16889019,760,265,679,435,370" onmouseout="" onmouseover=""&gt;halijenn&lt;/A&gt;,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for ur reply. Its working. COOL....&lt;SPAN __jive_emoticon_name="cool" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/cool.gif"&gt;&lt;/SPAN&gt;&lt;SPAN __jive_emoticon_name="cool" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/cool.gif"&gt;&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Take a bunch of Thanks&lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Didar&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 21 Mar 2010 13:30:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359963#M728212</guid>
      <dc:creator>r3linquish3d</dc:creator>
      <dc:date>2010-03-21T13:30:49Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359964#M728215</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Great to hear, thanks for updating and rating.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 21 Mar 2010 22:57:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359964#M728215</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-03-21T22:57:06Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359965#M728218</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;You are welcome&lt;/SPAN&gt;&lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;Now from OFFICE_LAN firewall im getting INSIDE and DMZ, but from the local lan i can't&lt;/SPAN&gt;&lt;SPAN __jive_emoticon_name="plain" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/plain.gif"&gt;&lt;/SPAN&gt;. OFFICE_LAN side firewall IP is 192.168.2.1 and OFFICE_LAN outside IP is 192.168.108.2 which is connected to router(192.168.108.1).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How can I solve that? any help&lt;SPAN __jive_emoticon_name="plain" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/plain.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 08:19:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359965#M728218</guid>
      <dc:creator>r3linquish3d</dc:creator>
      <dc:date>2010-03-22T08:19:29Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359966#M728221</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you mean you can't connect to DMZ from Inside LAN? If that is a true statement, you need to configure the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;static (inside,dmz) 192.168.107.0 192.168.107.0 netmask 255.255.255.0&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 08:28:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359966#M728221</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-03-22T08:28:34Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359967#M728223</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;INSIDE and DMZ is working smooth and fine. I am talking OFFICE_LAN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/9/1/4/3419-OFFICE_LAN.jpg" class="jive-image" /&gt;&lt;/P&gt;&lt;P&gt;From OFFICE_LAN_FW, im getting INSIDE and DMZ, but not from OFFICE_LAN.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 08:57:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359967#M728223</guid>
      <dc:creator>r3linquish3d</dc:creator>
      <dc:date>2010-03-22T08:57:32Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359968#M728225</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry, I am a bit confused from where to where is the traffic. Can you please advise the source and destination subnet, and also share the current configuration on OFFICE_LAN_FW. Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 09:02:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359968#M728225</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-03-22T09:02:46Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359969#M728230</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;INSIDE and DMZ communication is fully ok. I can reach INSIDE and DMZ from OFFICE_LAN_FW. But i can't reach INSIDE and DMZ from OFFICE_LAN.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/1/2/4/3421-OFFICE_LAN_Connectivity.jpg" class="jive-image" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 10:37:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359969#M728230</guid>
      <dc:creator>r3linquish3d</dc:creator>
      <dc:date>2010-03-22T10:37:14Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359970#M728234</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is what needs to be configured:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (insidelan,insideremotelan) 192.168.107.0 192.168.107.0 netmask 255.255.255.0&lt;/P&gt;&lt;P&gt;static (insidelan,insideremotelan) 192.168.109.0 192.168.109.0 netmask&amp;nbsp; 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 10:41:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359970#M728234</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-03-22T10:41:49Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359971#M728235</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;Its not working&lt;/SPAN&gt;&lt;SPAN __jive_emoticon_name="sad" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/sad.gif"&gt;&lt;/SPAN&gt;&lt;SPAN __jive_emoticon_name="sad" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/sad.gif"&gt;&lt;/SPAN&gt;&lt;SPAN __jive_emoticon_name="cry" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/cry.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 11:11:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359971#M728235</guid>
      <dc:creator>r3linquish3d</dc:creator>
      <dc:date>2010-03-22T11:11:51Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359972#M728236</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please clear the xlate table just in case it created a dynamic translation prior to the configuration: &lt;STRONG&gt;clear xlate&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 11:17:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359972#M728236</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-03-22T11:17:38Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359973#M728237</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;Not working&lt;/SPAN&gt;&lt;SPAN __jive_emoticon_name="sad" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/sad.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 12:19:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359973#M728237</guid>
      <dc:creator>r3linquish3d</dc:creator>
      <dc:date>2010-03-22T12:19:10Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359974#M728238</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you still have the ACL configured with "permit ip any any" on all interfaces?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What about the router? Does it have route for the OFFICE_LAN pointing towards the OFFICE_LAN_FW interface (192.168.108.2)?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 12:23:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359974#M728238</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-03-22T12:23:59Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ASA 5520 configuration doesn't working</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359975#M728239</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;ACL is only applied to &lt;EM&gt;insideremotelan&lt;/EM&gt; interface.&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; access-group 121 in interface insideremotelan&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;all the necessary routes had been added in the firewall. From INSIDE and DMZ I can access everything and reversly from the OFFICE_LAN_FW, I can reach INSIDE and DMZ. &lt;/SPAN&gt;&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Mar 2010 12:51:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5520-configuration-doesn-t-working/m-p/1359975#M728239</guid>
      <dc:creator>r3linquish3d</dc:creator>
      <dc:date>2010-03-22T12:51:56Z</dc:date>
    </item>
  </channel>
</rss>

