<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5510 - Can't access internet in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014180#M921245</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The following command:&lt;/P&gt;&lt;P&gt;access-group inside_access_in in interface inside control-plane&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;should be:&lt;/P&gt;&lt;P&gt;access-group inside_access_in in interface inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, are you able to ping the internet, try to ping 4.2.2.2, or even try to ping 63.93.81.97, from a PC and see if you have any replies.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Perhaps you have no DNS resolution?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also assume that your PC default gateway is 192.168.0.252, and your PC is configured with ip address of 192.168.0.x and subnet mask of 255.255.255.0 ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 30 Aug 2012 13:21:01 GMT</pubDate>
    <dc:creator>Jennifer Halim</dc:creator>
    <dc:date>2012-08-30T13:21:01Z</dc:date>
    <item>
      <title>ASA 5510 - Can't access internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014179#M921244</link>
      <description>&lt;P&gt;I'm installing a new ASA 5510.&amp;nbsp; I tried to configure a simple setup and get that working before I deal with DMZ and VPN.&amp;nbsp; I can't even get our internal subnet to access the internet on the outside interface.&amp;nbsp; My internal subnet is 192.168.0.0/24 and my outside IP is 63.93.81.98 and gw is 63.93.81.97.&amp;nbsp; I'm not sure what I'm missing here.&amp;nbsp; Here is my config:&lt;/P&gt;&lt;P&gt;Result of the command: "show running-config"&lt;/P&gt;&lt;P&gt;: Saved&lt;BR /&gt;:&lt;BR /&gt;ASA Version 8.2(5) &lt;BR /&gt;!&lt;BR /&gt;hostname ciscoasa&lt;BR /&gt;domain-name doorcontrolsusa.com&lt;BR /&gt;enable password aqGwzrart3V.q/x2 encrypted&lt;BR /&gt;passwd 2KFQnbNIdI.2KYOu encrypted&lt;BR /&gt;names&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/0&lt;BR /&gt;nameif outside&lt;BR /&gt;security-level 0&lt;BR /&gt;ip address 63.93.81.98 255.255.255.248 &lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt;nameif inside&lt;BR /&gt;security-level 100&lt;BR /&gt;ip address 192.168.0.252 255.255.255.0 &lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt;shutdown&lt;BR /&gt;no nameif&lt;BR /&gt;no security-level&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/3&lt;BR /&gt;shutdown&lt;BR /&gt;no nameif&lt;BR /&gt;no security-level&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;nameif management&lt;BR /&gt;security-level 100&lt;BR /&gt;ip address 192.168.1.1 255.255.255.0 &lt;BR /&gt;management-only&lt;BR /&gt;!&lt;BR /&gt;ftp mode passive&lt;BR /&gt;dns domain-lookup outside&lt;BR /&gt;dns domain-lookup inside&lt;BR /&gt;dns server-group DefaultDNS&lt;BR /&gt;name-server 192.168.0.7&lt;BR /&gt;domain-name doorcontrolsusa.com&lt;BR /&gt;dns server-group Outside&lt;BR /&gt;name-server 198.6.100.38&lt;BR /&gt;name-server 198.6.1.5&lt;BR /&gt;same-security-traffic permit inter-interface&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;access-list inside_access_in extended permit ip 192.168.0.0 255.255.255.0 any &lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu management 1500&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;global (outside) 1 interface&lt;BR /&gt;nat (inside) 1 192.168.0.0 255.255.255.0&lt;BR /&gt;access-group inside_access_in in interface inside control-plane&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 63.93.81.97 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;timeout floating-conn 0:00:00&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.1.0 255.255.255.0 management&lt;BR /&gt;http 192.168.0.0 255.255.255.0 inside&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;BR /&gt;crypto ipsec security-association lifetime seconds 28800&lt;BR /&gt;crypto ipsec security-association lifetime kilobytes 4608000&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd address 192.168.1.2-192.168.1.254 management&lt;BR /&gt;!&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics access-list&lt;BR /&gt;no threat-detection statistics tcp-intercept&lt;BR /&gt;webvpn&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum client auto&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map &lt;BR /&gt;&amp;nbsp; inspect ftp &lt;BR /&gt;&amp;nbsp; inspect h323 h225 &lt;BR /&gt;&amp;nbsp; inspect h323 ras &lt;BR /&gt;&amp;nbsp; inspect rsh &lt;BR /&gt;&amp;nbsp; inspect rtsp &lt;BR /&gt;&amp;nbsp; inspect esmtp &lt;BR /&gt;&amp;nbsp; inspect sqlnet &lt;BR /&gt;&amp;nbsp; inspect skinny&amp;nbsp; &lt;BR /&gt;&amp;nbsp; inspect sunrpc &lt;BR /&gt;&amp;nbsp; inspect xdmcp &lt;BR /&gt;&amp;nbsp; inspect sip&amp;nbsp; &lt;BR /&gt;&amp;nbsp; inspect netbios &lt;BR /&gt;&amp;nbsp; inspect tftp &lt;BR /&gt;&amp;nbsp; inspect ip-options &lt;BR /&gt;&amp;nbsp; inspect icmp &lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;prompt hostname context &lt;BR /&gt;no call-home reporting anonymous&lt;BR /&gt;Cryptochecksum:a487a8689e1d63da2c6a4c8c50eda685&lt;BR /&gt;: end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm using ASDM and a little CLI as I'm very new to this.&amp;nbsp; Any help is much appreciated.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Keith Nations&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 12:43:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014179#M921244</guid>
      <dc:creator>dcsdoor1975</dc:creator>
      <dc:date>2020-02-21T12:43:26Z</dc:date>
    </item>
    <item>
      <title>ASA 5510 - Can't access internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014180#M921245</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The following command:&lt;/P&gt;&lt;P&gt;access-group inside_access_in in interface inside control-plane&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;should be:&lt;/P&gt;&lt;P&gt;access-group inside_access_in in interface inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, are you able to ping the internet, try to ping 4.2.2.2, or even try to ping 63.93.81.97, from a PC and see if you have any replies.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Perhaps you have no DNS resolution?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also assume that your PC default gateway is 192.168.0.252, and your PC is configured with ip address of 192.168.0.x and subnet mask of 255.255.255.0 ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Aug 2012 13:21:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014180#M921245</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2012-08-30T13:21:01Z</dc:date>
    </item>
    <item>
      <title>ASA 5510 - Can't access internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014181#M921246</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Without changing anything, it seems to be working now.&amp;nbsp; My ISP could have been having issues.&amp;nbsp; I'm still testing to make sure it doesn't drop.&amp;nbsp; Then I'll dive into setting up DMZ and VPN.&amp;nbsp; Thanks for your help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 13:44:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014181#M921246</guid>
      <dc:creator>dcsdoor1975</dc:creator>
      <dc:date>2012-08-31T13:44:08Z</dc:date>
    </item>
    <item>
      <title>ASA 5510 - Can't access internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014182#M921247</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Good to hear all is good now. All the best with the rest of the config.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 13:56:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014182#M921247</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2012-08-31T13:56:56Z</dc:date>
    </item>
    <item>
      <title>ASA 5510 - Can't access internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014183#M921248</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jennifer,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry for crashing in this thread. I have a similar problem, actually.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have just configured a site-to-site VPN between ASA5510-ASA5520 running ASA 8.4(3).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Site-to-site VPN is working and humming along. Thing is, I can't browse the internet.&lt;/P&gt;&lt;P&gt;I CAN however ping 4.2.2.2 but havent tried any other public IP address for that matter.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have already configured nat with the following command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network inside-net&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (inside,outside) dynamic interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Still, I cant browse the internet.&lt;SPAN __jive_emoticon_name="confused" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/tiny_mce3/plugins/jiveemoticons/images/spacer.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope to hear from you soon.&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Jemel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Sep 2012 13:02:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014183#M921248</guid>
      <dc:creator>santiago.jem</dc:creator>
      <dc:date>2012-09-03T13:02:51Z</dc:date>
    </item>
    <item>
      <title>ASA 5510 - Can't access internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014184#M921249</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;no problem, Jemel.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you can ping 4.2.2.2 that means you have internet connectivity.&lt;/P&gt;&lt;P&gt;Most probably your DNS resolution is not working, ie: try to see if cisco.com resolves to any ip address. If not, then check the DNS setting.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Sep 2012 13:16:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014184#M921249</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2012-09-03T13:16:38Z</dc:date>
    </item>
    <item>
      <title>ASA 5510 - Can't access internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014185#M921250</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jennifer,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes I think that solved the issue for me. Thank you. What I did was replace the DNS with th public DNS server of 4.2.2.2.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Our PCs get their IP Addresses from the ASA, IP Addresses are renewed, including DNS Servers.&lt;/P&gt;&lt;P&gt;Could it be that the issue is with the ISP DNS Server?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jemel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Sep 2012 22:16:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014185#M921250</guid>
      <dc:creator>santiago.jem</dc:creator>
      <dc:date>2012-09-03T22:16:14Z</dc:date>
    </item>
    <item>
      <title>ASA 5510 - Can't access internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014186#M921251</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Definitely sounds like an issue with the ISP DNS server. Otherwise, if you use 4.2.2.2, it won't work too if there is issue with the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would check with your ISP for the DNS server, because if you use 4.2.2.2, depending on where you are, the DNS resolution might take longer time than using your ISP DNS server because it should be local/closer to where you are.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All the best.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 04 Sep 2012 02:09:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/2014186#M921251</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2012-09-04T02:09:49Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510 - Can't access internet</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/3902420#M921252</link>
      <description>&lt;P&gt;I am also having an issue accessing the Internet from workstations/server behind my Cisco ASA5540 firewall.&amp;nbsp; I have worked on this for many hours, with no luck.&amp;nbsp; I have been using Cisco PIX firewalls for years, and am trying very hard to get over on this ASA5540 firewall.&amp;nbsp; I honestly do not understand what the issue is.&amp;nbsp; I can ping out to the Internet from the firewall, no problem, both a IPs and at DNS names.&amp;nbsp; I just cannot get out to the Internet from any server or workstation.&amp;nbsp; The following is my configuration, and after that, a "show version" output.&amp;nbsp; Please let me know what you think might be wrong here.&amp;nbsp; Thank you very much!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ciscoasa5540(config)# show config&lt;BR /&gt;: Saved&lt;BR /&gt;: Written by enable_15 at 18:29:44.131 UTC Fri Aug 2 2019&lt;BR /&gt;!&lt;BR /&gt;ASA Version 7.2(2)&lt;BR /&gt;!&lt;BR /&gt;hostname ciscoasa5540&lt;BR /&gt;domain-name edenhosting.net&lt;BR /&gt;enable password Vkz0vtCccFeMll8t encrypted&lt;BR /&gt;names&lt;BR /&gt;name 10.1.252.245 NS1 description Primary DNS Server (91)&lt;BR /&gt;name 10.1.252.219 Sendmail description OLD Mail Server (92)&lt;BR /&gt;name 10.1.252.247 ExchangeServer description Exchange Server 2016 (94)&lt;BR /&gt;name 10.1.252.249 WebServerIIS80 description Windows Server 2012 (93)&lt;BR /&gt;name 10.1.252.190 DRAC-DNS description DRAC for DNS Server (87)&lt;BR /&gt;name 10.1.252.191 DRAC-WebServer description DRAC for Web Server (92)&lt;BR /&gt;name 10.1.252.246 NAS description Synology NAS (86)&lt;BR /&gt;name 10.1.252.250 WebServerIIS10 description Windows Server 2019 (88)&lt;BR /&gt;name 10.1.252.192 DRAC-VirtualServer description DRAC for Virtual Server (89)&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;speed 100&lt;BR /&gt;duplex full&lt;BR /&gt;nameif outside&lt;BR /&gt;security-level 0&lt;BR /&gt;ip address 12.43.6.90 255.255.0.0&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;speed 100&lt;BR /&gt;duplex full&lt;BR /&gt;nameif inside&lt;BR /&gt;security-level 100&lt;BR /&gt;ip address 10.1.252.254 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;shutdown&lt;BR /&gt;no nameif&lt;BR /&gt;no security-level&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;shutdown&lt;BR /&gt;no nameif&lt;BR /&gt;no security-level&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;nameif management&lt;BR /&gt;security-level 100&lt;BR /&gt;ip address 192.168.1.1 255.255.255.0&lt;BR /&gt;management-only&lt;BR /&gt;!&lt;BR /&gt;passwd ZPTx1zDL8pJ7Ffwu encrypted&lt;BR /&gt;ftp mode passive&lt;BR /&gt;dns domain-lookup outside&lt;BR /&gt;dns server-group DefaultDNS&lt;BR /&gt;name-server NS1&lt;BR /&gt;name-server 8.8.8.8&lt;BR /&gt;domain-name edenhosting.net&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.91 host NS1 eq domain&lt;BR /&gt;access-list inside_access_in extended permit udp host 12.43.6.91 host NS1 eq domain&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.92 host Sendmail eq pop3&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.92 host Sendmail eq smtp&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.92 host Sendmail eq domain&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.92 host Sendmail eq 587&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.92 host Sendmail eq 465&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.92 host Sendmail eq www&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.92 host Sendmail eq https&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.92 host Sendmail eq 8088&lt;BR /&gt;access-list inside_access_in extended permit icmp any any&lt;BR /&gt;access-list inside_access_in extended permit tcp host 12.43.6.93 host WebServerIIS80 eq www&lt;BR /&gt;access-list inside_access_in extended permit ip 10.1.252.0 255.255.255.0 any&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging timestamp&lt;BR /&gt;logging buffer-size 999999&lt;BR /&gt;logging buffered debugging&lt;BR /&gt;logging trap debugging&lt;BR /&gt;logging history debugging&lt;BR /&gt;logging asdm debugging&lt;BR /&gt;logging facility 23&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;mtu management 1500&lt;BR /&gt;ip verify reverse-path interface outside&lt;BR /&gt;no failover&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;asdm image disk0:/asdm-522.bin&lt;BR /&gt;asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;nat-control&lt;BR /&gt;nat (inside) 1 10.1.252.0 255.255.255.0&lt;BR /&gt;static (inside,outside) 12.43.6.91 NS1 netmask 255.255.255.255&lt;BR /&gt;static (inside,outside) 12.43.6.92 Sendmail netmask 255.255.255.255 tcp 0 120&lt;BR /&gt;static (inside,outside) 12.43.6.93 WebServerIIS80 netmask 255.255.255.255 tcp 0 120&lt;BR /&gt;access-group inside_access_in in interface inside&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 12.43.6.81 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout uauth 0:05:00 absolute&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.1.0 255.255.255.0 management&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd address 192.168.1.2-192.168.1.254 management&lt;BR /&gt;dhcpd enable management&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;prompt hostname context&lt;BR /&gt;Cryptochecksum:c01c5eda61d05eb6144365d3feb1d611&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ciscoasa5540(config)# show version&lt;/P&gt;&lt;P&gt;Cisco Adaptive Security Appliance Software Version 7.2(2)&lt;BR /&gt;Device Manager Version 5.2(2)&lt;/P&gt;&lt;P&gt;Compiled on Wed 22-Nov-06 14:16 by builders&lt;BR /&gt;System image file is "disk0:/asa722-k8.bin"&lt;BR /&gt;Config file at boot was "startup-config"&lt;/P&gt;&lt;P&gt;ciscoasa5540 up 2 hours 41 mins&lt;/P&gt;&lt;P&gt;Hardware: ASA5540-K8, 2560 MB RAM, CPU Pentium 4 2000 MHz&lt;BR /&gt;Internal ATA Compact Flash, 256MB&lt;BR /&gt;BIOS Flash AT49LW080 @ 0xffe00000, 1024KB&lt;/P&gt;&lt;P&gt;Encryption hardware device : Cisco ASA-55x0 on-board accelerator (revision 0x0)&lt;BR /&gt;Boot microcode : CNlite-MC-Boot-Cisco-1.2&lt;BR /&gt;SSL/IKE microcode: CNlite-MC-IPSEC-Admin-3.03&lt;BR /&gt;IPSec microcode : CNlite-MC-IPSECm-MAIN-2.04&lt;BR /&gt;0: Ext: GigabitEthernet0/0 : address is 001a.2f94.4f56, irq 9&lt;BR /&gt;1: Ext: GigabitEthernet0/1 : address is 001a.2f94.4f57, irq 9&lt;BR /&gt;2: Ext: GigabitEthernet0/2 : address is 001a.2f94.4f58, irq 9&lt;BR /&gt;3: Ext: GigabitEthernet0/3 : address is 001a.2f94.4f59, irq 9&lt;BR /&gt;4: Ext: Management0/0 : address is 001a.2f94.4f55, irq 11&lt;BR /&gt;5: Int: Internal-Data0/0 : address is 0000.0001.0002, irq 11&lt;BR /&gt;6: Int: Internal-Control0/0 : address is 0000.0001.0001, irq 5&lt;BR /&gt;&lt;BR /&gt;Licensed features for this platform:&lt;BR /&gt;Maximum Physical Interfaces : Unlimited&lt;BR /&gt;Maximum VLANs : 200&lt;BR /&gt;Inside Hosts : Unlimited&lt;BR /&gt;Failover : Active/Active&lt;BR /&gt;VPN-DES : Enabled&lt;BR /&gt;VPN-3DES-AES : Enabled&lt;BR /&gt;Security Contexts : 2&lt;BR /&gt;GTP/GPRS : Disabled&lt;BR /&gt;VPN Peers : 5000&lt;BR /&gt;WebVPN Peers : 10&lt;/P&gt;&lt;P&gt;This platform has an ASA 5540 VPN Premium license.&lt;/P&gt;&lt;P&gt;Serial Number: JMX1112L1JH&lt;BR /&gt;Running Activation Key: 0x133c6c4f 0x3cca370e 0x9882a598 0x897810c8 0x0a2c0289&lt;BR /&gt;Configuration register is 0x1&lt;BR /&gt;Configuration last modified by enable_15 at 18:29:39.206 UTC Fri Aug 2 2019&lt;/P&gt;</description>
      <pubDate>Sat, 03 Aug 2019 06:44:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-can-t-access-internet/m-p/3902420#M921252</guid>
      <dc:creator>beatinger</dc:creator>
      <dc:date>2019-08-03T06:44:15Z</dc:date>
    </item>
  </channel>
</rss>

