Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
This is straight off of one of the 2821's that I built out.Put the WAN IP address [provided by your ISP] on the outside interface with subnet mask.Put the LAN, inside, private IP address on the inside interface with subnet mask. This IP address is th...
Do a show ver and see what version of ASA OS and ASDM you are running.packet-tracer To enable packet tracing capabilities for packet sniffing and network fault isolation, use the packet-tracer commandin privileged EXEC configuration mode. To disable ...
Place a "shutdown" on interfaces e0/1 to e0/6For control of devices by MAC access, see "mac-list" command at the following URL:http://www.cisco.com/en/US/docs/security/asa/asa80/command/reference/m.html#wp1888833
Keep the extended ACL close to the source and use the REAL IP address. NAT occurs within the ASA, so you are dealing with externals.If you have 6 or 14 external, public IP addresses from your ISP, you can NAT ... otherwise you are stuck with PAT.For ...
1. Static NAT works for various tcp ports. This is the one for your mail server:access-list 101 permit tcp any host eq smtpstatic (inside,outside) tcp smtp 192.168.0.93 smtp netmask 255.255.255.255 0 0static (inside,outside) tcp smtp 192.168.0.93 ...