cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
606
Views
0
Helpful
3
Replies

Default Route

patrick.hurley
Level 3
Level 3

It seems that I can use the default route for both inside and outside network reachability.

route inside 0 0 10.x.x.x

route outside 0 0 32.x.x.x

Is this the case?

3 Replies 3

Jon Marshall
Hall of Fame
Hall of Fame

Patrick

"It seems that I can use the default route for both inside and outside network reachability"

Do you mean have them both at the same time ? If so not a good idea as the ASA will not know which default route applies to which traffic. You can have multiple default routes (up to 3) but they should all point out the same interface.

Jon

kicharle
Level 1
Level 1

With two default routes, it will load balance.

Try to ping a device through outside interface, I think, you will get alternate success and failure.

Saurabh Kishore
Level 1
Level 1

Hi Patrick,

What IOS version are you running on the firewall?

from what i know, this cannot be configured on the firewall. even if you try to add the second default route you should get an error.

pixfirewall(config)# route outside 0 0 4.4.4.1

pixfirewall(config)# route inside 0 0 192.168.1.2

ERROR: Cannot add route entry, possible conflict with existing routes

pixfirewall(config)# sh run route

route outside 0.0.0.0 0.0.0.0 4.4.4.1 1

So you can see clearly the the firewall will not let you enter the second default route.

The best possible solution to this will be to enter specific static routes on the firewall for your inside networks.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card