Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,The company where I work is in process to become an Autonomous System. We'll request an AS number and an IP block to the RIR.I've attached a picture which shows what we are thinking to do.Today we already have these two ASA running as active/failo...
Hi,I'm working in a migration of a CheckPoint Firewall to an ASA5520. I freeze on a situation that seems ASA cannot "reproduce" CheckPoint configuration. Follow the scenario:- IP Address X on the Internet access IP Address X1 in the Inside network th...
I have the following L2L VPN scenario:(192.168.200.X)--Router2801 --|Internet|-- ASA5510 (192.168.10.X, 192.168.20.X, 192.168.30.X,....)At Router2801 side I'm able to access any network at the ASA5510 side and vice-versa, but sometimes it seems conne...
I'm trying to use the followin command on a 2801 (IOS 12.3.14) and on a 2811 (IOS 12.4.5)show ip nbar protocol-discovery stats bit-rate top 10Why does it show bit-rate information only at one of the interfaces?Ex.: Serial0/1/0 ...
HiI've just changed a PIX506E by an ASA5505. After that I've got some troubles with remote IP Communicator clients connecting by VPN. They can connect on the VPN and register their IP Communicator, but they're not able to make calls. When the New Cal...
Maybe this link should help.http://www.cisco.com/en/US/tech/tk648/tk361/technologies_configuration_example09186a0080100548.shtmlAlso what we do is define a range of ports for passive ftp. For example 6000 to 6100.So instead you use access-list 100 pe...
Hi Andrew,Thank you for your interest.Well, this is a migration from a CheckPoint firewall to an ASA, as I said before. I confess that I don't understand why this was made this way in CheckPoint. The point here is that I am supposed to replicate chec...
Hi Andrew,What I must do is for example:200.1.1.1 (internet) ----> ASA (NAT IP 80.1.1.1) ----> 10.1.1.1 (inside)190.1.1.1 (internet) ----> ASA (NAT IP 80.1.1.1) ----> 10.1.1.2 (inside)When packets come from 200.1.1.1 ASA should redirect to inside IP ...