Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
PROBLEM: Proxy port exhaustion occurs when having high number of users using multiple devices and using cloud services.
Example:
There are some limitations when using office 365...~the number of ports allocated by the average user which is about 4 or...
Hi,I have three interfaces: Inside, DMZ, Outside.Inside has a wireless router (using 10.0.0.2) to connect to ASA (10.0.0.1) -using vlan 1.DMZ (vlan12) is setup with 172.16.0.1/24 ~ I have 3 servers (.2 -.3 -and .101....the 101 is an ubuntu (12.04) se...
I have an ASA5505 (base license, ASDM 7.1(3), ASA 9.(2), and am confused about the "denied due to NAT reverse path failure".My IP schema is as follows:INSIDE = 10.0.1.0/24DMZ =172.16.0.0/24VPN_Pool = 172.16.20.0/24PROBLEM: Vpn users can connect to AS...
SETUPASA 5505ASA Version 9.1(2)ASDM Version 7.1(3)I have basic license, using only three vlans (outside, inside, DMZ).QUESTION:I want to find a way (if possible) to use the single DYNAMIC IP (dhcp'd from ISP) on the "outside" interface, as a means to...
Jim,
Thank you for the response!
The reason for NAT was just a security decision, and the choice of ip4-vs-ip6 is really of little difference in reference to the proxy-port problem I suppose.
Understanding that I am trying to get server engineers ...
Sandy,I have ASA with ip 172.16.0.1/24 on DMZ vlan...so Ubuntu IP config is as follows:-------------- /etc/network/interfacesauto eth0iface eth0 inet static address 172.16.0.101 netmask 255.255.255.0 network 172.16.0.0 bro...
Marvin, Thank you for getting back to me on this - you were 100% correct!!I added the following "nat exemption" rules, totally resolved my issues!...nat (DMZ,outside) source static DMZ_Net DMZ_Net destination static vpnhosts vpnhostsnat (inside,outs...
Jouni, Wow! That was FAST and TOTALLY CORRECT!! - OUTSTANDING!!!I did also change my ASDM port just to be sure of that issue you noted.I can't say "Thank You!" enough!Jason(aka) Robert, axetone, et al.