cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
464
Views
0
Helpful
2
Replies

Internet access ACL question

sahara101
Beginner
Beginner

Hello, 

 

I created a new context on an ASA, copied the ACL and NAT configuration from another ASA in it. But the internet is not working on the VMs if I do not create a new ACL with any ip or any http, http and icmp for ping. What am I missing? On other contexts we have any ip deny and internet is working...

 

Thank you!

2 Replies 2

balaji.bandi
VIP Community Legend VIP Community Legend
VIP Community Legend

In ASA Context means, another FW.

 

So you need to check below :

 

is the new Context ASA have routing in place to reach internet. Do you have correct interfaces allocated in and outside ?

 

show run will help to find out what is wrong ?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

sahara101
Beginner
Beginner

Yes, we have outside and inside and others as well. Routing to outside is set up because internet is working from asa directly (inside the context) and also working on VMs but only with any any ip allow for example. If I set any any ip deny internet is no longer working on VM (no ping and no browsing). Yet, there are other contexts with any any ip deny and internet works. 

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Recognize Your Peers