cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
240
Views
0
Helpful
2
Replies

2960 Switch and ASA 5540 problem

gasparmenendez
Level 3
Level 3

Hi,

I have my ASA 5540 configured with IP address 10.0.0.1/29 in the INSIDE interface and a public IP in the OUTSIDE. Connected to the ASA I have a Cisco Switch 2960 (L2) with 2 vLan's: vlan 230 (no DHCP) with IP address 10.0.0.2 and vlan 4 (DHCP) and IP address 10.4.0.1. In Switch I configured ip default-gateway 10.0.0.1

When I connect my Lap to a port in the 2960 configured in mode access in vlan 230 and set a static IP, etc. I can reach internet without problem.

The problem is when I configure the port in mode access to vlan 4 the Lap gets IP address by DHCP (10.4.0.2) but don't reach the internet. In fact, don't even ping the INSIDE interface of the ASA (10.0.0.1). In the ASA I did set up a static route like this: route INSIDE 10.4.0.0 255.255.240.0 10.0.0.2

From ASA I can ping IP 10.4.0.1 (vlan in Switch) but can't ping 10.4.0.2 (Lap)

What I'm missing here?? Could be a Switch problem??? Maybe cause it is L2??

Thanks in advance.

BR

2 Replies 2

Reza Sharifi
Hall of Fame
Hall of Fame

Hi,

Can you post config from the ASA?

HTH

sorry for the delay, but something happened...

I was accessing ASA through OUSIDE interface (I'm in a remote site) by ASDM and SSH without any problem, but when I set nat (INSIDE.OUTSIDE) static interface in order to NAT everything from inside to outside, I suddenly lost contact with the ASA. Did I something wrong??

Review Cisco Networking for a $25 gift card