Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hey everyone, I've got an ASA5510 that was booting up fine a week ago. Today I try to connect via console and I get nothing. Power cycled it, and both the "status" and "active" lights are amber. I know this indicates a system problem...is there a...
Hey everyone, I've created 3 different tunnel-groups for remote access VPN, each being assigned addresses out of a different pool that doesn't coincide with an existing internal network. The problem I'm running into is that while the VPN client for...
Hello all, I've got 2 edge routers, each with a fiber connection to my ISP (2 separate circuits, same ISP). I've got my public ASN, and BGP is working properly with my ISP on each of these routers. What I need to set up is failover...so if one rou...
Hey everyone, I've run into a problem with an ASA5510. Basically what I need to do is allow traffic from one NAT'd address to another NAT'd address on the same external interface. So I have a client PC on an internal network and it initiate...
Hello everyone, I am configuring a PIX 501 for a small office situation, and have a server internally that is providing web-based services on two separate ports. What I want to do is map a public IP for each internal service on the same server. Th...
Sorry for taking so long to come back to this. It was definitely a NAT issue. There were 2 problems...first was I hadn't created a NAT for each interface I wanted that traffic to traverse. The second problem (and this was a KILLER) was the order o...
So with this NAT I have only a single internal subnet that I'm NAT'ing to from my vpn pool. Once that NAT happens, how do I allow access to additional subnets? Will the ACLs take over from there?Thanks for the help,Sean
OK we figured it out. Turns out my ISP had a static route to the primary router that didn't get removed when they turned up the backup circuit to my second router. They removed the static route and everything is working as intended.Thanks for all o...
I got HSRP working properly...so now my outbound traffic fails over correctly. Thanks for all the help guys! The one last piece that isn't working is external connections. If I "down" one of my routers, traffic destined for my BGP-advertised networ...
Each of the routers has a direct link via SMF to my ISP's router. So this is using the SFP interface in auto-negotiate mode.I've added neighbor entries to initiate iBGP on the two routers...and eBGP is working properly. Just isn't failing over when...