Hi!Make sure that you have installed CA Root certificate on both routers. Also a very common mistake is that routers don't have time adjusted and could cause certificates to fail.Do you have any logg or debug information?- Yamil
If it gives you an error about the command, it is perhaps because we are missing the "netmask" parameter. The right sintax of the static translation isstatic(incoming_interface,outgoing_interface) fake_ip real_ip netmask maskIn your case:static(insi...
Joe,To be honest, I don't know any "match" command to do NAT translations. I looked for that command but I found nothing that would match it used in the global config mode; I've always used nat or statitc statements. So I am not sure if you add tha...
Hi Joe!What the error message "No translation group found for tcp src govnet:159.105.221.114/12156 dst inside:Proxy1/8080" means is that you do not have a NAT rule for traffic coming from 159.105.221.114 going to Proxy1 host, and you need to have one...
Joe,If you want to pass traffic from an outside to an inside interface in an ASA, you need to make sure that you have two things:1.- An access-group that allows traffic to come in.2.- A NAT rule that matches the traffic.So in this case if we have the...