Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, we're moving to a new data center and will be upgrading to an ASA 5506.Given that switchport functionality present in the 5505 has for some reason been removed in the 5506, it seems that we need an L2 switch thrown into the mix. Fair enough, woul...
Hi All.Have seen a similar issue but am not sure how to approach the problem given my setup.The specific issue is that when any of the following occurs:1) remote users connect/authenticate to the mail server over smtp2) an internal app server relays ...
Hey all.Looks like at some point a Cisco TAC member added, "same-security-traffic permit intra-interface" to my config. Since I have a base license, I only have 3 vlans (2 1/2 really): inside, outside and dmz, which are on security levels 100, 0, an...
Thanks for the reply, very helpful.
re: rackspace, fair enough, sounds like without the rackmount bracket the firewall and switch can sit side-by-side within 1U of space directly on the server (have had this type of "informal" setup for years in cur...
Jouni, I have marked applicable answers as correct, and starred others accordingly.Great work, have this page bookmarked, nice reference guide for understanding static NAT and dynamic PAT relationship.Thanks again, you're a networking master
Whoo hooo, you networking genius, works like a charm Thanks, this was a tough problem to tackle, wish I could mark question as answered a hundred times.Cheers!
I'm going to try this in a little while, Jouni, will let you know how it goes.Marking this as the correct answer seeing as you've given 10 answers in 1
Jouni, thanks for all the detail here.I am seeing the reverse DNS mismatch in all 3 scenarios listed in original email (connected over vpn; dmz app server relay through mail server; remote user authenticate to mail server).I can see that the mail ser...