This config worked for me:ASA version 9.xASA# conf t!http server enablehttp 172.16.0.0 255.255.255.0 insidessh 172.16.0.0 255.255.255.0 inside!management-access inside!asdm image disk0:/asdm-xxx.binasdm location 172.16.0.0 255.255.255.0 inside!ip loc...
I also had to remove "IP reverse path" feature on the inbound interface as traceroute replies where comming from intermediate carrier hops with source address that is not routable accross firewall interface therefore they were dropped by "IP reverse ...
I also had to remove "IP reverse path" feature on the inbound interface as traceroute replies where comming from intermediate carrier hops with source address that is not routable accross firewall interface therefore they were dropped by "IP reverse ...