<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA5520 config assistance in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393102#M956000</link>
    <description>Marvin, The current config is not working--hosts in the inside of the firewall can't access the Internet.. Any suggestions other than NAT?  The IOS ver. was updated-thanks again.</description>
    <pubDate>Sun, 03 Jun 2018 04:24:37 GMT</pubDate>
    <dc:creator>saidfrh18</dc:creator>
    <dc:date>2018-06-03T04:24:37Z</dc:date>
    <item>
      <title>ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393051#M955943</link>
      <description>&lt;P&gt;Hi,&amp;nbsp; 1) The following config on an ASA5520 doesn't work-unable to provide Internet access for inside hosts. 2) how to upgrade the version to 7.2, see sh flash. Kindly advise.&lt;/P&gt;
&lt;P&gt;Topology: Comcast/Xfinity&amp;gt;cable modem&amp;gt;0 int Asa5520&amp;gt;1 int&amp;gt; dumb switch.&lt;/P&gt;
&lt;P&gt;Thanks in advance.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;ciscoasa&amp;gt; en&lt;BR /&gt;Password: *******&lt;BR /&gt;ciscoasa# sh flash&lt;BR /&gt;Initializing disk0: cache, please wait....Done.&lt;BR /&gt;-#- --length-- -----date/time------ path&lt;BR /&gt;&amp;nbsp; 6 5474304&amp;nbsp;&amp;nbsp;&amp;nbsp; Jan 01 2003 00:04:50 asa706-k8.bin&lt;BR /&gt;&amp;nbsp; 7 5823980&amp;nbsp;&amp;nbsp;&amp;nbsp; Jul 07 2007 00:16:32 asdm506.bin&lt;BR /&gt;&amp;nbsp;10 8312832&amp;nbsp;&amp;nbsp;&amp;nbsp; Jul 20 2007 06:53:16 asa722-k8.bin&lt;BR /&gt;&amp;nbsp;11 5623108&amp;nbsp;&amp;nbsp;&amp;nbsp; Jul 20 2007 06:59:44 asdm-522.bin&lt;BR /&gt;&lt;BR /&gt;230121472 bytes available (25305088 bytes used)&lt;BR /&gt;&lt;BR /&gt;ciscoasa# sh run&lt;BR /&gt;: Saved&lt;BR /&gt;:&lt;BR /&gt;ASA Version 7.0(6)&lt;BR /&gt;!&lt;BR /&gt;hostname ciscoasa&lt;BR /&gt;domain-name default.domain.invalid&lt;BR /&gt;enable password zN4MekdmaxjRpJL9 encrypted&lt;BR /&gt;names&lt;BR /&gt;dns-guard&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address dhcp setroute&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;speed 1000&lt;BR /&gt;&amp;nbsp;duplex full&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.20.1 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;passwd zN4MekdmaxjRpJL9 encrypted&lt;BR /&gt;ftp mode passive&lt;BR /&gt;pager lines 24&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;no failover&lt;BR /&gt;asdm image disk0:/asdm-522.bin&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;route inside 0.0.0.0 0.0.0.0 192.168.20.1 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00&lt;BR /&gt;timeout mgcp-pat 0:05:00 sip 0:30:00 sip_media 0:02:00&lt;BR /&gt;timeout uauth 0:05:00 absolute&lt;BR /&gt;username said password XYjSJ3a.RNYXN3xw encrypted&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.2.0 255.255.255.0 inside&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh 192.168.20.0 255.255.255.0 inside&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd address 192.168.20.3-192.168.20.18 inside&lt;BR /&gt;dhcpd dns 1.1.1.1&lt;BR /&gt;dhcpd lease 3600&lt;BR /&gt;dhcpd ping_timeout 50&lt;BR /&gt;dhcpd auto_config outside&lt;BR /&gt;dhcpd enable inside&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns maximum-length 512&lt;BR /&gt;&amp;nbsp; inspect ftp&lt;BR /&gt;&amp;nbsp; inspect h323 h225&lt;BR /&gt;&amp;nbsp; inspect h323 ras&lt;BR /&gt;&amp;nbsp; inspect netbios&lt;BR /&gt;&amp;nbsp; inspect rsh&lt;BR /&gt;&amp;nbsp; inspect rtsp&lt;BR /&gt;&amp;nbsp; inspect skinny&lt;BR /&gt;&amp;nbsp; inspect esmtp&lt;BR /&gt;&amp;nbsp; inspect sqlnet&lt;BR /&gt;&amp;nbsp; inspect sunrpc&lt;BR /&gt;&amp;nbsp; inspect tftp&lt;BR /&gt;&amp;nbsp; inspect sip&lt;BR /&gt;&amp;nbsp; inspect xdmcp&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;Cryptochecksum:fd2906823d92bc8cb385c3ecff36a641&lt;BR /&gt;: end&lt;BR /&gt;ciscoasa#&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:50:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393051#M955943</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2020-02-21T15:50:30Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393076#M955944</link>
      <description>&lt;P&gt;There's no NAT configuration. You need that to change the 192.168.20.0/24 hosts' addresses to a public IP (e.g. the outside interface address you get via DHCP).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;PRE&gt;nat (inside) 1 0 0 
global (outside) 1 interface&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To change the image to boot 7.2(2) instead of 7.0(6) you would add a boot variable line.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;PRE&gt;boot system disk0:/&lt;SPAN&gt;asa722-k8.bin&lt;/SPAN&gt;&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 03 Jun 2018 02:17:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393076#M955944</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-06-03T02:17:57Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393093#M955998</link>
      <description>Marvin Rhoads, Thanks for the answer. Currently a Motorola Surfboard cable connects to the ISP and the Ethernet interface on the Surfboard generates a private IP address that connects to the home WiFi. I want to replace the home WiFi with the ASA5520. Regards. The home WiFi is configured to receive IP address from the Surfboard. Thanks for command to update the IOS.&lt;BR /&gt;</description>
      <pubDate>Sun, 03 Jun 2018 04:13:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393093#M955998</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-03T04:13:21Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393102#M956000</link>
      <description>Marvin, The current config is not working--hosts in the inside of the firewall can't access the Internet.. Any suggestions other than NAT?  The IOS ver. was updated-thanks again.</description>
      <pubDate>Sun, 03 Jun 2018 04:24:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393102#M956000</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-03T04:24:37Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393104#M956002</link>
      <description>&lt;P&gt;Are the inside hosts all in the 192.168.20.0/24 subnet?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Try running packet-tracer on the ASA to check the logic. Something like:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;PRE&gt;packet-tracer input inside tcp 192.168.20.100 1025 8.8.8.8 80&lt;/PRE&gt;
&lt;P&gt;That will simulate a client PC trying to access an external web site.&lt;/P&gt;</description>
      <pubDate>Sun, 03 Jun 2018 04:40:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393104#M956002</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-06-03T04:40:06Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393118#M956003</link>
      <description>Marvin, The following is the output for the packet-tracer command.&lt;BR /&gt;&lt;BR /&gt;ciscoasa&amp;gt; en&lt;BR /&gt;Password: *******&lt;BR /&gt;ciscoasa# packet-tracer input inside tcp 192.168.20.100 1025 8.8.8.8 80&lt;BR /&gt;&lt;BR /&gt;Phase: 1&lt;BR /&gt;Type: ACCESS-LIST&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Implicit Rule&lt;BR /&gt;Additional Information:&lt;BR /&gt;MAC Access list&lt;BR /&gt;&lt;BR /&gt;Phase: 2&lt;BR /&gt;Type: FLOW-LOOKUP&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;BR /&gt;Found no matching flow, creating a new flow&lt;BR /&gt;&lt;BR /&gt;Phase: 3&lt;BR /&gt;Type: ROUTE-LOOKUP&lt;BR /&gt;Subtype: input&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;BR /&gt;in   0.0.0.0         0.0.0.0         inside&lt;BR /&gt;&lt;BR /&gt;Phase: 4&lt;BR /&gt;Type: ACCESS-LIST&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: DROP&lt;BR /&gt;Config:&lt;BR /&gt;Implicit Rule&lt;BR /&gt;Additional Information:&lt;BR /&gt;&lt;BR /&gt;Result:&lt;BR /&gt;input-interface: inside&lt;BR /&gt;input-status: up&lt;BR /&gt;input-line-status: up&lt;BR /&gt;output-interface: inside&lt;BR /&gt;output-status: up&lt;BR /&gt;output-line-status: up&lt;BR /&gt;Action: drop&lt;BR /&gt;Drop-reason: (acl-drop) Flow is denied by configured rule&lt;BR /&gt;&lt;BR /&gt;ciscoasa#&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;#- Please type your reply above this line -##</description>
      <pubDate>Sun, 03 Jun 2018 05:03:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393118#M956003</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-03T05:03:45Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393121#M956005</link>
      <description>Marvin,   The inside hosts are in the 192.168.20.0/24 subnet.&lt;BR /&gt;&lt;BR /&gt;Regards.</description>
      <pubDate>Sun, 03 Jun 2018 05:16:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393121#M956005</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-03T05:16:15Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393206#M956007</link>
      <description>&lt;P&gt;The packet-tracer highlight at least one issue that will cause it to fail. You've set the default route to point to the inside:&lt;/P&gt;
&lt;PRE&gt;&lt;SPAN&gt;route inside 0.0.0.0 0.0.0.0 192.168.20.1&amp;nbsp;&lt;/SPAN&gt;&lt;/PRE&gt;
&lt;P&gt;&lt;SPAN&gt;You should remove that line and this allow the gi0/0 configuration to install the default route as it will with the following command you already have:&lt;/SPAN&gt;&lt;/P&gt;
&lt;PRE&gt;ip address dhcp setroute&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;(corrected reply - 06-04-2018)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Jun 2018 14:32:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393206#M956007</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-06-04T14:32:41Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393207#M956009</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;lt;duplicate reply&amp;gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Jun 2018 14:31:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393207#M956009</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-06-04T14:31:28Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393256#M956011</link>
      <description>on g0/0, no ip address dhcp setroute. Hosts on 0/1 can't access the Internet.&lt;BR /&gt;&lt;BR /&gt;ciscoasa(config)# int g0/0&lt;BR /&gt;ciscoasa(config-if)# no ip address dhcp setroute&lt;BR /&gt;&lt;BR /&gt;Kindly advise.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Sun, 03 Jun 2018 16:40:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393256#M956011</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-03T16:40:45Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393273#M956013</link>
      <description>Hosts unable to access the Internet.&lt;BR /&gt;&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt; speed 1000&lt;BR /&gt; duplex full&lt;BR /&gt; nameif outside&lt;BR /&gt; security-level 0&lt;BR /&gt; ip address dhcp setroute&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt; speed 1000&lt;BR /&gt; duplex full&lt;BR /&gt; nameif inside&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.20.1 255.255.255.0&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Sun, 03 Jun 2018 17:19:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393273#M956013</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-03T17:19:45Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393689#M956016</link>
      <description>&lt;P&gt;Note I corrected my earlier reply. Please try that updated guidance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If it still doesn't work, please re-run the packet-tracer and share the output.&lt;/P&gt;</description>
      <pubDate>Mon, 04 Jun 2018 14:33:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393689#M956016</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-06-04T14:33:37Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393956#M956018</link>
      <description>Removed: route inside 0 0 192.168.20.1&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;ciscoasa# packet-tracer input inside tcp 192.168.20.100 1025 8.8.8.8 80&lt;BR /&gt;&lt;BR /&gt;Phase: 1&lt;BR /&gt;Type: FLOW-LOOKUP&lt;BR /&gt;Subtype:&lt;BR /&gt;Result: ALLOW&lt;BR /&gt;Config:&lt;BR /&gt;Additional Information:&lt;BR /&gt;Found no matching flow, creating a new flow&lt;BR /&gt;&lt;BR /&gt;Result:&lt;BR /&gt;input-interface: inside&lt;BR /&gt;input-status: up&lt;BR /&gt;input-line-status: up&lt;BR /&gt;Action: drop&lt;BR /&gt;Drop-reason: (no-route) No route to host&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 05 Jun 2018 01:20:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393956#M956018</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-05T01:20:45Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393965#M956021</link>
      <description>&lt;P&gt;Is your outside interface up and has it received an address (along with a default gateway) via DHCP?&lt;/P&gt;</description>
      <pubDate>Tue, 05 Jun 2018 01:49:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393965#M956021</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-06-05T01:49:53Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393980#M956022</link>
      <description>ciscoasa&amp;gt; en&lt;BR /&gt;Password: *******&lt;BR /&gt;ciscoasa# sh int g0/0&lt;BR /&gt;Interface GigabitEthernet0/0 "outside", is up, line protocol is up&lt;BR /&gt;  Hardware is i82546GB rev03, BW 1000 Mbps&lt;BR /&gt;        Full-Duplex(Full-duplex), 1000 Mbps(1000 Mbps)&lt;BR /&gt;        MAC address 001b.d46e.33aa, MTU 1500&lt;BR /&gt;        IP address unassigned&lt;BR /&gt;        8 packets input, 512 bytes, 0 no buffer&lt;BR /&gt;        Received 8 broadcasts, 0 runts, 0 giants&lt;BR /&gt;        0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort&lt;BR /&gt;        0 L2 decode drops&lt;BR /&gt;        32 packets output, 19008 bytes, 0 underruns&lt;BR /&gt;        0 output errors, 0 collisions&lt;BR /&gt;        0 late collisions, 0 deferred&lt;BR /&gt;        input queue (curr/max blocks): hardware (2/0) software (0/0)&lt;BR /&gt;        output queue (curr/max blocks): hardware (0/1) software (0/0)&lt;BR /&gt;  Traffic Statistics for "outside":&lt;BR /&gt;        8 packets input, 368 bytes&lt;BR /&gt;        32 packets output, 18432 bytes&lt;BR /&gt;        0 packets dropped&lt;BR /&gt;      1 minute input rate 0 pkts/sec,  1 bytes/sec&lt;BR /&gt;      1 minute output rate 0 pkts/sec,  96 bytes/sec&lt;BR /&gt;      1 minute drop rate, 0 pkts/sec&lt;BR /&gt;      5 minute input rate 0 pkts/sec,  0 bytes/sec&lt;BR /&gt;      5 minute output rate 0 pkts/sec,  0 bytes/sec&lt;BR /&gt;      5 minute drop rate, 0 pkts/sec&lt;BR /&gt;ciscoasa# sh int g1/0&lt;BR /&gt;                  ^&lt;BR /&gt;ERROR: % Invalid input detected at '^' marker.&lt;BR /&gt;ciscoasa# sh int g0/1&lt;BR /&gt;Interface GigabitEthernet0/1 "inside", is up, line protocol is up&lt;BR /&gt;  Hardware is i82546GB rev03, BW 1000 Mbps&lt;BR /&gt;        Full-Duplex(Full-duplex), 1000 Mbps(1000 Mbps)&lt;BR /&gt;        MAC address 001b.d46e.33ab, MTU 1500&lt;BR /&gt;        IP address 192.168.20.1, subnet mask 255.255.255.0&lt;BR /&gt;        299 packets input, 19700 bytes, 0 no buffer&lt;BR /&gt;        Received 299 broadcasts, 0 runts, 0 giants&lt;BR /&gt;        0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort&lt;BR /&gt;        0 L2 decode drops&lt;BR /&gt;        0 packets output, 0 bytes, 0 underruns&lt;BR /&gt;        0 output errors, 0 collisions&lt;BR /&gt;        0 late collisions, 0 deferred&lt;BR /&gt;        input queue (curr/max blocks): hardware (8/0) software (0/0)&lt;BR /&gt;        output queue (curr/max blocks): hardware (0/0) software (0/0)&lt;BR /&gt;  Traffic Statistics for "inside":&lt;BR /&gt;        290 packets input, 13904 bytes&lt;BR /&gt;        0 packets output, 0 bytes&lt;BR /&gt;        2 packets dropped&lt;BR /&gt;      1 minute input rate 1 pkts/sec,  55 bytes/sec&lt;BR /&gt;      1 minute output rate 0 pkts/sec,  0 bytes/sec&lt;BR /&gt;      1 minute drop rate, 0 pkts/sec&lt;BR /&gt;      5 minute input rate 0 pkts/sec,  0 bytes/sec&lt;BR /&gt;      5 minute output rate 0 pkts/sec,  0 bytes/sec&lt;BR /&gt;      5 minute drop rate, 0 pkts/sec&lt;BR /&gt;ciscoasa#</description>
      <pubDate>Tue, 05 Jun 2018 03:15:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393980#M956022</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-05T03:15:45Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393983#M956023</link>
      <description>&lt;P&gt;You’re not getting an address or route via DHCP. Until you resolve that, traffic will not flow.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 05 Jun 2018 03:25:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393983#M956023</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-06-05T03:25:24Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393987#M956024</link>
      <description>A wireless router connected to the Motorola cable modem. This Asa5505 was connected to a port in one of the four switch ports of the wireless router. A static IP address was assigned to g0/0 of the asa. G0/1 was assigned to a different subnet. A host connected to the g0/1 network could only access Yahoo.com, Gmail and hotmail.  very slowly and could get to any other Internet site. The IP phone would provide a dial tone, yet phone numbers couldn't dial out-silent.&lt;BR /&gt;</description>
      <pubDate>Tue, 05 Jun 2018 03:35:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3393987#M956024</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-05T03:35:45Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3394160#M956025</link>
      <description>&lt;P&gt;Let's see once again:&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;&amp;nbsp;- show route&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;&amp;nbsp;- show run nat&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;&amp;nbsp;- show run access-group&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 05 Jun 2018 10:05:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3394160#M956025</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2018-06-05T10:05:55Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3394275#M956026</link>
      <description>ciscoasa# sh route&lt;BR /&gt;&lt;BR /&gt;Codes: C - connected, S - static, I - IGRP, R - RIP, M - mobile, B - BGP&lt;BR /&gt;       D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area&lt;BR /&gt;       N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2&lt;BR /&gt;       E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP&lt;BR /&gt;       i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area&lt;BR /&gt;       * - candidate default, U - per-user static route, o - ODR&lt;BR /&gt;       P - periodic downloaded static route&lt;BR /&gt;&lt;BR /&gt;Gateway of last resort is 192.168.20.1 to network 0.0.0.0&lt;BR /&gt;&lt;BR /&gt;C    192.168.20.0 255.255.255.0 is directly connected, inside&lt;BR /&gt;S*   0.0.0.0 0.0.0.0 [1/0] via 192.168.20.1, inside&lt;BR /&gt;ciscoasa# sh run nat&lt;BR /&gt;ciscoasa# sh run access-?&lt;BR /&gt;&lt;BR /&gt;  access-group    access-list&lt;BR /&gt;ciscoasa# sh run access-group&lt;BR /&gt;ciscoasa#&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 05 Jun 2018 13:11:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3394275#M956026</guid>
      <dc:creator>saidfrh18</dc:creator>
      <dc:date>2018-06-05T13:11:45Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5520 config assistance</title>
      <link>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3394277#M956027</link>
      <description>&lt;P&gt;As I already noted, you are not getting an address or route assigned via DHCP. That's one problem that must be resolved and is not on the ASA.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Furthermore, the output you provided shows you did not enter the NAT commands I suggested earlier.&lt;/P&gt;</description>
      <pubDate>Tue, 05 Jun 2018 13:19:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5520-config-assistance/m-p/3394277#M956027</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-06-05T13:19:31Z</dc:date>
    </item>
  </channel>
</rss>

