<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Secondary IP on Outside Interface in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342485#M858199</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;OK&lt;/P&gt;&lt;P&gt;Today I have route for outside going through existing IP.When I add new interface and ip do I need to add any extra routing ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 02 Sep 2009 16:48:18 GMT</pubDate>
    <dc:creator>CCDECCDE9</dc:creator>
    <dc:date>2009-09-02T16:48:18Z</dc:date>
    <item>
      <title>Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342479#M858193</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it possible to have seconday ip address on OUTSIDE Interface of ASA 5540 8.0(4) ? I am trying to get new ip scheme for our network and I have 1200 tunnels terminating to this box.I want to gradually move them to new IP address rather than replacing the IP of OUTSIDE Interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 16:08:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342479#M858193</guid>
      <dc:creator>CCDECCDE9</dc:creator>
      <dc:date>2019-03-11T16:08:09Z</dc:date>
    </item>
    <item>
      <title>Re: Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342480#M858194</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Both PIX and ASAs don't support secondary ip addresses.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Syed&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Aug 2009 20:07:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342480#M858194</guid>
      <dc:creator>Syed Iftekhar Ahmed</dc:creator>
      <dc:date>2009-08-20T20:07:31Z</dc:date>
    </item>
    <item>
      <title>Re: Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342481#M858195</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If I add an another interface to ASA and configure it with new ip ,can I terminate tunnels to this interface ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Sep 2009 14:10:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342481#M858195</guid>
      <dc:creator>CCDECCDE9</dc:creator>
      <dc:date>2009-09-02T14:10:33Z</dc:date>
    </item>
    <item>
      <title>Re: Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342482#M858196</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;is the new IP address in the same subnet as the existing outside interface?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Sep 2009 15:21:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342482#M858196</guid>
      <dc:creator>srue</dc:creator>
      <dc:date>2009-09-02T15:21:07Z</dc:date>
    </item>
    <item>
      <title>Re: Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342483#M858197</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;NO,It is anew subnet&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Sep 2009 15:40:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342483#M858197</guid>
      <dc:creator>CCDECCDE9</dc:creator>
      <dc:date>2009-09-02T15:40:24Z</dc:date>
    </item>
    <item>
      <title>Re: Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342484#M858198</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;then use an unused interface, or create a subinterface and apply the new IP.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Sep 2009 16:00:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342484#M858198</guid>
      <dc:creator>srue</dc:creator>
      <dc:date>2009-09-02T16:00:35Z</dc:date>
    </item>
    <item>
      <title>Re: Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342485#M858199</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;OK&lt;/P&gt;&lt;P&gt;Today I have route for outside going through existing IP.When I add new interface and ip do I need to add any extra routing ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Sep 2009 16:48:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342485#M858199</guid>
      <dc:creator>CCDECCDE9</dc:creator>
      <dc:date>2009-09-02T16:48:18Z</dc:date>
    </item>
    <item>
      <title>Re: Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342486#M858200</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;On the ASA, there is only ONE default gw possible.&lt;/P&gt;&lt;P&gt;You have to add a static route for each site-to-site vpn (public IP and branch-LAN) to use the new WAN-interface.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 Sep 2009 15:07:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342486#M858200</guid>
      <dc:creator>alig.norbert</dc:creator>
      <dc:date>2009-09-03T15:07:45Z</dc:date>
    </item>
    <item>
      <title>Re: Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342487#M858201</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is the following route correct ? ALso do I have to name it "Outside" and same security level as the existing "outside" interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"route add outside 172.17.2.0 255.255.255.0 19.x.x.x "&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;where 172.17.2.0 = LAN on the other side of tunnel  and &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; 19.x.x.x =public ip of my new interface&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 Sep 2009 20:21:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342487#M858201</guid>
      <dc:creator>CCDECCDE9</dc:creator>
      <dc:date>2009-09-03T20:21:19Z</dc:date>
    </item>
    <item>
      <title>Re: Secondary IP on Outside Interface</title>
      <link>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342488#M858202</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If Outside is your new interface, here is your route statement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route Outside 172.17.2.0 255.255.255.0 &lt;DEFAULT gateway=""&gt;&lt;/DEFAULT&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You don't want to route to your public interface, you want to route to the new interface's default route. Check out this example below for a full configuration idea.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2 interfaces: E1, E2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;E1 is for all traffic but VPN&lt;/P&gt;&lt;P&gt;E2 is for VPN only&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Default gateway for E1 is 77.0.0.1&lt;/P&gt;&lt;P&gt;Default gateway for E2 is 88.0.0.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;VPN peer is 65.0.0.1 255.255.255.255&lt;/P&gt;&lt;P&gt;VPN lan addresses 10.0.0.0 255.0.0.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route E1 0.0.0.0 0.0.0.0 77.0.0.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route E2 65.0.0.1 255.255.255.255 88.0.0.1&lt;/P&gt;&lt;P&gt;route E2 10.0.0.0 255.0.0.0 88.0.0.1&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 Sep 2009 20:35:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/secondary-ip-on-outside-interface/m-p/1342488#M858202</guid>
      <dc:creator>August Ritchie</dc:creator>
      <dc:date>2009-09-03T20:35:29Z</dc:date>
    </item>
  </channel>
</rss>

