12-13-2017 03:42 AM - edited 02-21-2020 06:56 AM
I have an ASA-5505 Firewall with basic license.
In my Workplace I have IP pool of 10.2.0.0/16 and sub-netting them to 10.2.xxx.xxx/22 networks for ease of maintenence. Every subnet have default gateway of 10.2.XXX.1 (like 10.2.56.1 as gateway).
I have a application server for one of the web application.
IP address of that server is 172.22.14.1.
I had tried to configure ASA-5505 with Web-Server but not able to reach my web application.
Please suggest me configuration for ASA-5505.
Thanks in Advance for Help.
My mail ID kishan.s.r@gmail.com
12-13-2017 08:07 AM
Hi
More information is necessary. Can you share you firewall config, that would help.
-If I helped you somehow, please, rate it as useful.-
12-13-2017 08:48 PM
12-14-2017 10:30 AM
Hello,
Could you please attach the config within a .txt file and add a show route?
Regards,
12-14-2017 08:20 PM
12-15-2017 01:49 AM
12-15-2017 01:52 AM
12-15-2017 07:14 AM
Hello Kishan,
I was checking your configuration, and I have some doubts, could you please help me understand the following;
1. The outside interface is configured within the network 10.2.56.0/22 as shown in the configuration
interface Vlan2
nameif outside
security-level 0
ip address 10.2.56.220 255.255.252.0
But the default route its missconfigured is pointing to the inside interface instead of the outside interface:
route inside 0.0.0.0 0.0.0.0 10.2.56.220 1 --> 10.2.56.220 is an ip address within the outside interface range, more over is the ip address of the outside interface itself.
2. On the network diagram it seems that the 172.22.14.1 is behind the inside interface, I am not sure if it is directly connected but the ASA inside interface is configured within the 192.168.1.0 subnet and there is no route for 172.22.14 subnet.
Please let me know if thats the way it should be configured.
Regards,
12-17-2017 08:14 PM
Dear,
Actually i am trying to find out by changing gateway and so om so might be the configuration is not so perfect.
Please go through pdf file attached with reply which clarify the network and accordingly please suggest me changes or send me new configuration file...
12-18-2017 07:38 PM
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: