<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Route-map/per subnet default route in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072323#M894294</link>
    <description>&lt;P&gt;Good Day,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me preface this by saying that I do not have control over our router and getting any configuration changes would be problematic. (strange but true)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We currently have four subnets w/public IPs connected to 4 of the router ports. We are considering introducing wireless and, out of concern for conserving our addresses, are considering using private IPs nated to our current public IPs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Looking at an ASA 5550, is there a way to configure it such that traffic originating from a particular private subnet is nated through a specific outside port of the ASA to the gateway address on the router? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 14:05:13 GMT</pubDate>
    <dc:creator>ihouse205</dc:creator>
    <dc:date>2019-03-11T14:05:13Z</dc:date>
    <item>
      <title>Route-map/per subnet default route</title>
      <link>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072323#M894294</link>
      <description>&lt;P&gt;Good Day,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me preface this by saying that I do not have control over our router and getting any configuration changes would be problematic. (strange but true)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We currently have four subnets w/public IPs connected to 4 of the router ports. We are considering introducing wireless and, out of concern for conserving our addresses, are considering using private IPs nated to our current public IPs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Looking at an ASA 5550, is there a way to configure it such that traffic originating from a particular private subnet is nated through a specific outside port of the ASA to the gateway address on the router? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 14:05:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072323#M894294</guid>
      <dc:creator>ihouse205</dc:creator>
      <dc:date>2019-03-11T14:05:13Z</dc:date>
    </item>
    <item>
      <title>Re: Route-map/per subnet default route</title>
      <link>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072324#M894301</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think what you want is source-based routing. That's not supported in ASA at this time: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_qanda_item09186a00805b87d8.shtml#pbr" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_qanda_item09186a00805b87d8.shtml#pbr&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Oct 2008 13:15:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072324#M894301</guid>
      <dc:creator>ofwegen</dc:creator>
      <dc:date>2008-10-30T13:15:56Z</dc:date>
    </item>
    <item>
      <title>Re: Route-map/per subnet default route</title>
      <link>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072325#M894306</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you are not using VPN you can configure more than one context and have different gateways to them. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Oct 2008 18:02:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072325#M894306</guid>
      <dc:creator>guibarati</dc:creator>
      <dc:date>2008-10-30T18:02:49Z</dc:date>
    </item>
    <item>
      <title>Re: Route-map/per subnet default route</title>
      <link>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072326#M894310</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the answer, but it seems some clarification is necessary.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have four outside ports (out1-out4) and four inside ports (in1-in4).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The outside ports are configured with public IP addresses on the same subnet as the router port to which they are attached.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The inside ports are configured with private IPs (gateway for clients on private subnets). The client addresses on the private networks are natted corresponding to a specific interface e.g "in1" addresses are natted to the pool of public addresses in the "out1" pool.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I was making the assumption that in the course of being natted, a packet would be forwarded from the outside port to the next hop on the router w/o need for running a routing protocol and then get routed to its destination. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or, that it was possible to configure a default route for each network such as "route out1 0 0 x.x.x.x (routerIP1)" and "route out2 0 0 x.x.x.x (routerIP2)".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Adding the global default route passes traffic, but then I'm only taking advantage of a small percentage of available bandwidth.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any work around to get traffic from 4 private subnets routed onto 4 corresponding public networks when the only info in the routing table is comprised of direct connections or static routes. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Oct 2008 18:09:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072326#M894310</guid>
      <dc:creator>ihouse205</dc:creator>
      <dc:date>2008-10-30T18:09:36Z</dc:date>
    </item>
    <item>
      <title>Re: Route-map/per subnet default route</title>
      <link>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072327#M894312</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, using more then one context&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Oct 2008 18:13:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-map-per-subnet-default-route/m-p/1072327#M894312</guid>
      <dc:creator>guibarati</dc:creator>
      <dc:date>2008-10-30T18:13:32Z</dc:date>
    </item>
  </channel>
</rss>

