Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I am following this guide https://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/reimage/asa-ftd-reimage.html#task_vhy_5kc_sgb but I am unable to re-image from FTP to ASAwhen I do install security-pack version 9.14.1.15The output does n...
I have a pair of asa 5516-xI want to change destination port from 25 to 2525 if the destination IP is 10.10.10.10and the source IP has to change to the same that is on outside interface (normal nat)how can I do it? I tried this:object service port-ol...
I have 5 static IPs from ISPI have two border routers. I want to run HSRP for outside.R1: int gig 0/0 20.20.20.1 255.255.255.248ip nat outsideip route 0.0.0.0 0.0.0.0 20.20.20.6 R2: int gig 0/0 20.20.20.2 255.255.255.248ip nat outsideip route 0.0...
Situation:I have ASA 5506. With dual internet connection. It all works.Problem: I need certificate for anyconnect on both outside interfaces.They need different FQDN.As far as I know ASA can have only one hostname. Can I achieve this?Check the pictur...
I understand the difference between:
set ip next-hop
set ip default next-hop
I tried both in my config and there is no difference. how come?
The ultimate outcome is that the PBR always route the packets towards 192.168.11.254
LOOK FOR BOLD TEXT IN ...
I think the problem is that ASA-Europe is behind nat. So, ASA does not see the original source IP. for ASA-Europe it all looks like it comes from 10.0.0.137.
Since all ESP packets are coming from 10.0.0.137 port 4500. ASA does not know to which tunne...