cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
6457
Views
0
Helpful
59
Replies

NAT ASA 5510

danielgarzon
Level 1
Level 1

Hi,

I have an ASA 5510 and I can not configure fine.

My problem is that I have 10 public address connected to ASA and each public address is redirectioned to an internal IP address.

An of these public address is the ip address of mi ASA.

I need help for configure and access-list and an NAT, the others I will configure.

interface Ethernet0/0

description Interface_WAN_World-Ttrends

speed 100

duplex full

nameif outside

security-level 0

ip address 84.88.36.3 255.255.254.0

!

interface Ethernet0/1

description Interface_LAN_Ttrends-World

speed 100   

duplex full 

nameif inside

security-level 100

ip address 10.0.0.252 255.255.254.0

!

global (outside) 1 interface

nat (inside) 1 0.0.0.0 0.0.0.0

Thanks

59 Replies 59

Hi Daniel,

Could you try as given in the following document and let me know if you can access 10.0.0.156?

https://supportforums.cisco.com/community/netpro/security/firewall/blog/2010/10/27/asapix-proxy-arp-vs-gratuitous-arp

Let me know.

Regards,

Anu

Hi,

I activated this command but there are any entry with ip address 84.88.36.10

can I have a problem with my router ISP? Do I have to call to my ISP for clear your ARP table?

If you want You can connect via Webex :-P!!!

Thanks

Hi Daniel,

The document i provided is what you can do from your side. If you can call your ISP and ask them to clear the arp cache, that's much better.

Regards,

Anu

Eiissssss!!

I follewed your document and i change the IP addres of my ASA to 84.88.36.12 (an IP doesn't work) and after I change it to the original IP address.

Now, all work fine!!!!!

But now, inside my network can not access to this IP publics! What happens?

Thanks!!!

That's great Daniel!!

For the inside access, do the following:

static (inside, inside) 84.88.36.11 netmask 255.255.255.255

same-security-traffic permit intra interface

Let me know!

Regards,

Anu

P.S. Do rate posts that were helpful to you.

Hi,

I have configured four new rules and all work fine!!!!!

But, I can not access to public IP address from inside my network.

I have configured these commands:

static (inside,inside) 10.0.0.30 84.88.36.7 netmask 255.255.255.255

same-security-traffic permit intra-interface

But doesn't work.

Thanksss!!

Hi Daniel,

Are you using the IP address 84.88.36.7 or a hostname? Is the IP 10.0.0.30 reachable from the inside network?

Let me know.

Regards,

Anu

Hi,

I am using a IP address and Yes, I have access to my internal IP address 10.0.0.30 inside my network.

Thanks

Daniel Garzón

Hi Daniel,

It should be:

static (inside,inside) 84.88.36.7 10.0.0.30 netmask 255.255.255.255

and not

static (inside,inside) 10.0.0.30 84.88.36.7 netmask 255.255.255.255

I'm sorry i overlooked this part.

Let me know if this resolves the issue.

Regards,

Anu

I hate ASAaaa!!!

I configured these (with other internal IP, sorry, i have DHCP)

static (inside,inside) 84.88.36.7 10.0.0.52 netmask 255.255.255.255

same-security-traffic permit intra-interface

Doesn't work.

Grrr!!

Hi Daniel,

Could you add the following?

global (inside) 1 interface

let me know.

regards,

Anu

Ohhhhh my goddddd!!!!!

You are my idol!!!! Now, all work fine.

Thanks a lot.

Hi,

I'm sorry. I speak very quickly. I was acceding to another public ip addres. Sorry!!!

What I can do more?

Hi Daniel,

So which one works and which one doesn't? Or is the public IP still not reachable from the inside network?

Regards,

Anu

Hi,

All public IP addresses configured in ASA are still not reachable from the inside network.

Thanks

Regards,

Daniel Garzón.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: