cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1223
Views
0
Helpful
2
Replies

ASA outside interface private IP, VPN not working

aijaz802
Level 1
Level 1

Hi,

I have a point to point connection to the ISP thru cat6, n terminating on the ASA firewall outside interface. ISP is using private IPs on this link. Theye have alloted us 8 block public ip addresses for DMZ n etc..

I want to enable ipsec/ssl vpn on ASA. To achieve this I tried in different ways.

A) Done static translation to inside interface to outside public IP address. This is not working. Inside IP is 10.10.1.1

static (inside,outside) 202.x.x.244 10.10.1.1 netmask 255.255.255.255

B) I have also tried using the arp static command to bind one public IP to the mac address of outside interface. But it didn't work.

Does anyone has any idea how to do this.

Regards,

2 Replies 2

a.alekseev
Level 7
Level 7

You must use public ip on outside interface.

a.alekseev
Level 7
Level 7

or ask your provider to do a static nat for you.

for example you have 202.x.x.240/29

network address 202.x.x.240

brodcast 202.x.x.248

ask provider to nat 202.x.x.240 into the private IP of the outside interface of the ASA.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card