<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Diferents default next-hops in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968472#M916751</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It will follow the ASA default route..for example http traffic, to tell the asa to send outboud http traffic from specific inside network nated to another asa external interface for http it is still a PBR function, http traffic will go asa outside interface or whicever the default route points to. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rgds&lt;/P&gt;&lt;P&gt;Jorge &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 15 Jul 2008 19:27:04 GMT</pubDate>
    <dc:creator>JORGE RODRIGUEZ</dc:creator>
    <dc:date>2008-07-15T19:27:04Z</dc:date>
    <item>
      <title>Diferents default next-hops</title>
      <link>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968467#M916705</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I would like to forward all packets coming from a specific ip range on my LAN to a diferent next-hop. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a default route on ASA 0.0.0.0 0.0.0.0 200.200.200.200, but a specific internal network can't follow this way.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That must follow another way.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is that possible on my ASA 5540?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 13:14:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968467#M916705</guid>
      <dc:creator>Tauer Drumond</dc:creator>
      <dc:date>2019-03-11T13:14:25Z</dc:date>
    </item>
    <item>
      <title>Re: Diferents default next-hops</title>
      <link>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968468#M916714</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If Im not mistaken from your description you have two defaults routes in your network and have certain internat IP subnets to be directed to another default route other than the ASA default. ASA only supports one default route, so what you are trying to do is PBR which currently is not supported in PIX/ASA as of now.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What you may want to do is do the pbr from an inside router behind the ASA for accomplishing a next hop default route.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Jorge&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2008 14:18:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968468#M916714</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2008-07-15T14:18:02Z</dc:date>
    </item>
    <item>
      <title>Re: Diferents default next-hops</title>
      <link>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968469#M916728</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jorge,&lt;/P&gt;&lt;P&gt;what im wanting to do is exactely what you said.&lt;/P&gt;&lt;P&gt;unfortunately I cant put another router behind ASA. &lt;/P&gt;&lt;P&gt;Anyway, thank you by your help.&lt;/P&gt;&lt;P&gt;It was so helpfull.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tauer&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2008 14:39:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968469#M916728</guid>
      <dc:creator>Tauer Drumond</dc:creator>
      <dc:date>2008-07-15T14:39:19Z</dc:date>
    </item>
    <item>
      <title>Re: Diferents default next-hops</title>
      <link>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968470#M916733</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Tauer, you are  very welcome, it is said in past threads readings that there may be PBR suport in future ASA roadmap but I have no link to substantiate this claim.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Another option would also be a L3 switch if budget is an object, even a L3 3550 switch with an EMI image can do pbr, here is a link in the event you may consider placing a L3 device behind ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/switches/lan/catalyst3550/software/release/12.2_25_see/configuration/guide/swiprout.html#wp1260543" target="_blank"&gt;http://www.cisco.com/en/US/docs/switches/lan/catalyst3550/software/release/12.2_25_see/configuration/guide/swiprout.html#wp1260543&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Jorge&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2008 15:13:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968470#M916733</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2008-07-15T15:13:45Z</dc:date>
    </item>
    <item>
      <title>Re: Diferents default next-hops</title>
      <link>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968471#M916744</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jorge,&lt;/P&gt;&lt;P&gt;If I NAT the inside IP address at the specific external interface? Will the packets follow the default route or follow trought this interface?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Tauer&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2008 15:53:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968471#M916744</guid>
      <dc:creator>Tauer Drumond</dc:creator>
      <dc:date>2008-07-15T15:53:40Z</dc:date>
    </item>
    <item>
      <title>Re: Diferents default next-hops</title>
      <link>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968472#M916751</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It will follow the ASA default route..for example http traffic, to tell the asa to send outboud http traffic from specific inside network nated to another asa external interface for http it is still a PBR function, http traffic will go asa outside interface or whicever the default route points to. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rgds&lt;/P&gt;&lt;P&gt;Jorge &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2008 19:27:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968472#M916751</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2008-07-15T19:27:04Z</dc:date>
    </item>
    <item>
      <title>Re: Diferents default next-hops</title>
      <link>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968473#M916756</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ok Jorge,&lt;/P&gt;&lt;P&gt;So... I'll try find another solution.&lt;/P&gt;&lt;P&gt;I just wanna thank you by your answers..they were so helpfull.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tauer&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2008 19:30:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/diferents-default-next-hops/m-p/968473#M916756</guid>
      <dc:creator>Tauer Drumond</dc:creator>
      <dc:date>2008-07-15T19:30:17Z</dc:date>
    </item>
  </channel>
</rss>

