05-21-2014 10:11 PM - edited 03-11-2019 09:13 PM
hi all,
i'm trying to add static default route for both the 'outside' and 'management' interfaces but the ASA doesn't let me and getting an error.
i see them added successfully on our other ASA currently in production.
any commands i need to enable first in order for the ASA to accept these static routes?
ASA02/admin(config)# route management 0.0.0.0 0.0.0.0 172.27.6.129
ASA02/admin(config)# route outside 0.0.0.0 0.0.0.0 116.212.1.1
ERROR: Cannot add route entry, possible conflict with existing routes
05-21-2014 10:24 PM
05-21-2014 10:36 PM
hi john,
the older ASA has 8.3 code and accept the 2 static routes.
# sh ve
Cisco Adaptive Security Appliance Software Version 8.3(2)
i'm ASA 5525-x has an 8.6 code and doesn't accept these lines.
not sure if this is caused by image difference.
05-21-2014 11:10 PM
05-22-2014 12:48 AM
hi john,
thanks for the lead! i think it's a default policy on the ASA and should configure a different metric (AD) to be able to add them.
http://www.cisco.com/c/en/us/td/docs/security/asa/asa70/configuration/guide/config/ip.html#wp1047894
ciscoasa(config)# route outside 0 0 1.1.1.1
ciscoasa(config)# route management 0 0 2.2.2.2 2
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide