<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Issue with ASA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143914#M876828</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Unfortunately i cant  provide the configs because its not our firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All i can tell you is that there is a default route to the firewall which is advertised via bgp.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So traffic follows the default route the follows the connected route because it is more specific than the default so it is relying on ARP for the ip addresses and they are incomplete for anything it seems behind the customer firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kev&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 09 Feb 2009 08:50:22 GMT</pubDate>
    <dc:creator>kevinhobson2000</dc:creator>
    <dc:date>2009-02-09T08:50:22Z</dc:date>
    <item>
      <title>Issue with ASA</title>
      <link>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143909#M876823</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have an issue with my ASA where if i point a default route from the WAN router to the firewall i get incomplete arp records on the router and i cant get to anything behind the firewall.  But if i put the specific statics in to the subnets behind the firewall everything works fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is the problem with my firewall does it need proxy arp enabling to respond on behalf of these subnets.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kev&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 14:46:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143909#M876823</guid>
      <dc:creator>kevinhobson2000</dc:creator>
      <dc:date>2019-03-11T14:46:25Z</dc:date>
    </item>
    <item>
      <title>Re: Issue with ASA</title>
      <link>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143910#M876824</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Kevin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am assuming the inside interface of the WAN router and the outside interface of the ASA share the same public address space?  I am also assuming you are attempting to access RFC-1918 address space on the inside interface of the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To get traffic from a lower security interface (outside) to a higher security interface (inside) on PIX/ASA firewalls you need static statements.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Feb 2009 19:26:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143910#M876824</guid>
      <dc:creator>eddie.mitchell</dc:creator>
      <dc:date>2009-02-05T19:26:53Z</dc:date>
    </item>
    <item>
      <title>Re: Issue with ASA</title>
      <link>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143911#M876825</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Eddie,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hi this is a customer of ours.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Its not a public its on a 10 range.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We supply them with internet access but that is a different router.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know anymore info you need.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kev&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 06 Feb 2009 07:44:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143911#M876825</guid>
      <dc:creator>kevinhobson2000</dc:creator>
      <dc:date>2009-02-06T07:44:14Z</dc:date>
    </item>
    <item>
      <title>Re: Issue with ASA</title>
      <link>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143912#M876826</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Kev,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is "nat-control" enabled on the ASA?  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please reference the following document:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008046f31a.shtml#backinfo" target="_blank"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008046f31a.shtml#backinfo&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 06 Feb 2009 13:26:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143912#M876826</guid>
      <dc:creator>eddie.mitchell</dc:creator>
      <dc:date>2009-02-06T13:26:02Z</dc:date>
    </item>
    <item>
      <title>Re: Issue with ASA</title>
      <link>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143913#M876827</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Plz provide the configs &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it would help to narrow down the problem much better&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 06 Feb 2009 13:34:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143913#M876827</guid>
      <dc:creator>Pravin Phadte</dc:creator>
      <dc:date>2009-02-06T13:34:32Z</dc:date>
    </item>
    <item>
      <title>Re: Issue with ASA</title>
      <link>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143914#M876828</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Unfortunately i cant  provide the configs because its not our firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All i can tell you is that there is a default route to the firewall which is advertised via bgp.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So traffic follows the default route the follows the connected route because it is more specific than the default so it is relying on ARP for the ip addresses and they are incomplete for anything it seems behind the customer firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kev&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Feb 2009 08:50:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143914#M876828</guid>
      <dc:creator>kevinhobson2000</dc:creator>
      <dc:date>2009-02-09T08:50:22Z</dc:date>
    </item>
    <item>
      <title>Re: Issue with ASA</title>
      <link>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143915#M876829</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Did you ever resolve?  Sounds somewhat familiar to a problem that I am having.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Feb 2009 19:18:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/issue-with-asa/m-p/1143915#M876829</guid>
      <dc:creator>wandawg</dc:creator>
      <dc:date>2009-02-18T19:18:34Z</dc:date>
    </item>
  </channel>
</rss>

