Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi.I beleave that my NAT setup is not optimal and/or correct - but works I have one wish: i need to see orginal host ip on other subnet I have 3 subnets connected thru ASA 5506. (simplified)They are routed using eigrp.1) 192.168.16.0/16 - Orginal "Co...
Hi
We have an ISP connection with 2 scopes
x.224/30 and y.232/29
The /30 range is our public outside IP and the incoming /29 traffic is routed to x.226 by the ISP
We have a server on one of the /29 IP's with public DNS assigned.
When i try to acc...
Hi.
I get a lot of ICMP deny in our firewall log - Typically type 11,0 like this:
Deny icmp src outside:77.243.33.157 dst Support_Net:10.10.60.206 (type 11, code 0) by access-group "outside_access_in" [0x0, 0x0]
Q1) Should i allow these Time Exce...
Thanks for the reply and sorry for the slow response.
I failed to mention that the server is located on another inside interface.
Would it only be a matter of changing the nat rule "nat (INSIDE,INSIDESERVER)" to reflect the correct names ?
And ...
I agree and that is also practice, but I'm still interested in why this shows up - Especially whether or not it is initialized by inside hosts.
I don't believe that users purposely use traceroute, since it has no meaning in there jobs, but you never ...