<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: (TWO OUTSIDE INTERFACES) ONE FOR A HOST AND OTHER FOR OTHERS in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199923#M860921</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please Update with more details wat exactly you want ..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) You want policy based routing ( which not possible in asa) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2) You have inside network (10.10.10.0/24) &amp;amp; you have 2 differnet subnet which is connected to 2 different internet pipes , Your target if request is coming for the 1st network then its will move to 1st internet link &amp;amp; if request is coming for another subnet then it move to another internet link .which can be possible through Policy nat .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please update with details .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Ritesh Malviya&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 13 Apr 2009 18:33:55 GMT</pubDate>
    <dc:creator>r.malviya</dc:creator>
    <dc:date>2009-04-13T18:33:55Z</dc:date>
    <item>
      <title>(TWO OUTSIDE INTERFACES) ONE FOR A HOST AND OTHER FOR OTHERS HOSTS</title>
      <link>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199922#M860920</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a ASA 5510 with 2 interfaces outside that 2 internet links are connected it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to do that a host in inside netwok goes out by a interface outise and others host goes out by other interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Someone know how can I to do this?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 15:17:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199922#M860920</guid>
      <dc:creator>leandro.candido</dc:creator>
      <dc:date>2019-03-11T15:17:47Z</dc:date>
    </item>
    <item>
      <title>Re: (TWO OUTSIDE INTERFACES) ONE FOR A HOST AND OTHER FOR OTHERS</title>
      <link>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199923#M860921</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please Update with more details wat exactly you want ..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) You want policy based routing ( which not possible in asa) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2) You have inside network (10.10.10.0/24) &amp;amp; you have 2 differnet subnet which is connected to 2 different internet pipes , Your target if request is coming for the 1st network then its will move to 1st internet link &amp;amp; if request is coming for another subnet then it move to another internet link .which can be possible through Policy nat .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please update with details .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Ritesh Malviya&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Apr 2009 18:33:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199923#M860921</guid>
      <dc:creator>r.malviya</dc:creator>
      <dc:date>2009-04-13T18:33:55Z</dc:date>
    </item>
    <item>
      <title>Re: (TWO OUTSIDE INTERFACES) ONE FOR A HOST AND OTHER FOR OTHERS</title>
      <link>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199924#M860922</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Malviya,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I beleave that PBR could solve this problem, but is not supported in ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have two internet links main and secondary (2 outside interfaces) and 1 inside interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to permit that a only host goes out by a of secondary internet link, while all others host goes out by the main link. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The subnet is the same.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Apr 2009 18:58:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199924#M860922</guid>
      <dc:creator>leandro.candido</dc:creator>
      <dc:date>2009-04-13T18:58:54Z</dc:date>
    </item>
    <item>
      <title>Re: (TWO OUTSIDE INTERFACES) ONE FOR A HOST AND OTHER FOR OTHERS</title>
      <link>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199925#M860923</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is possible only if all your inside network goes by doing PolicyNAT.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Lets consider the following.&lt;/P&gt;&lt;P&gt;interface outsideA: ip= A.A.A.A&lt;/P&gt;&lt;P&gt;interface outsideB: ip= B.B.B.B&lt;/P&gt;&lt;P&gt;interface insideH. ip=H.H.H.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your two hosts:&lt;/P&gt;&lt;P&gt;H.H.H.A and H.H.H.B&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Note: This configuration only works if your inside host uses your outside interface IP for internet access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Commands:&lt;/P&gt;&lt;P&gt;access-list internetA extended permit ip host H.H.H.A any&lt;/P&gt;&lt;P&gt;access-list internetB extended permit ip host H.H.H.B any&lt;/P&gt;&lt;P&gt;global (outsideA) 2 interface&lt;/P&gt;&lt;P&gt;gloabl (outsideB) 3 interface&lt;/P&gt;&lt;P&gt;nat (inside) 2 access-list internetA&lt;/P&gt;&lt;P&gt;nat (inside) 3 access-list internetB&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Apr 2009 23:48:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199925#M860923</guid>
      <dc:creator>roshan.maskey</dc:creator>
      <dc:date>2009-04-13T23:48:49Z</dc:date>
    </item>
    <item>
      <title>Re: (TWO OUTSIDE INTERFACES) ONE FOR A HOST AND OTHER FOR OTHERS</title>
      <link>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199926#M860925</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi maskey,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I did what you suggest, but because I have two link I wasn't able to configure a default route for each link.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route internetA 0.0.0.0 0.0.0.0 x.x.x.x&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route internetB 0.0.0.0 0.0.0.0 y.y.y.y&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Someone know how can I configure two defaults routes in ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 14 Apr 2009 00:40:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199926#M860925</guid>
      <dc:creator>leandro.candido</dc:creator>
      <dc:date>2009-04-14T00:40:18Z</dc:date>
    </item>
    <item>
      <title>Re: (TWO OUTSIDE INTERFACES) ONE FOR A HOST AND OTHER FOR OTHERS</title>
      <link>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199927#M860929</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The default routing pointing to internet should be like this:&lt;/P&gt;&lt;P&gt;Assuming your two outside interfaces are named:&lt;/P&gt;&lt;P&gt;outsideA &lt;/P&gt;&lt;P&gt;outsideB&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the default route to internet should be:&lt;/P&gt;&lt;P&gt;route outsideA 0.0.0.0 0.0.0.0 x.x.x.x&lt;/P&gt;&lt;P&gt;route outsideB 0.0.0.0 0.0.0.0 y.y.y.y&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Test the connection using packet tracer&lt;/P&gt;&lt;P&gt;source IP: H.H.H.A &lt;/P&gt;&lt;P&gt;src port: 2000&lt;/P&gt;&lt;P&gt;protocol: tcp&lt;/P&gt;&lt;P&gt;dest public IP: P.P.P.P&lt;/P&gt;&lt;P&gt;dst port: 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Review the packet tracer output closely &lt;/P&gt;&lt;P&gt;repeat with inside ip: H.H.H.B&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 14 Apr 2009 03:45:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199927#M860929</guid>
      <dc:creator>roshan.maskey</dc:creator>
      <dc:date>2009-04-14T03:45:22Z</dc:date>
    </item>
    <item>
      <title>Re: (TWO OUTSIDE INTERFACES) ONE FOR A HOST AND OTHER FOR OTHERS</title>
      <link>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199928#M860930</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Roshan, did you get this working, trying to setup the same configuration (Two ISP's)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If so how did the routeing work ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in Advance !&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Jun 2009 11:20:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-outside-interfaces-one-for-a-host-and-other-for-others-hosts/m-p/1199928#M860930</guid>
      <dc:creator>smartin</dc:creator>
      <dc:date>2009-06-11T11:20:41Z</dc:date>
    </item>
  </channel>
</rss>

