Solved

Cisco ASA 5505 with DSL

Posted on 2011-02-14
3
2,073 Views
Last Modified: 2012-05-11
I have just had PPPoE DSL service installed at a remote office location. The DSL modem/router is a Motorola Netopia 3000. The DSL service has five static IP addresses: x.x.x.241-245, with .246 as the gateway, and 255.255.255.248 as the mask. The DSL service is working properly; when I connect the DSL modem to the LAN with its DHCP server enabled, it leases addresses to the clients, and they are able to browse the web, etc.

Now, I have a Cisco ASA 5505 that I would like to use for a VPN connection to the main office.

In the past, I have dealt with only T1 and Cable, not DSL. With Cable, I would simply assign one of my public IP addresses to the outside interface on the ASA, assign a LAN address (e.g. 192.168.1.1) to the inside interface, and configure a static route using the service's gateway address -- and voilà! I'm in business.

Note: In the above scenarios, I have typically used internal DHCP and DNS servers. In this case, I have no server on the LAN; I would like to use the 5505 as a DHCP server, and point my clients to the ISP DNS servers.

So, I configured the ASA as noted above, enabling the DHCP server to hand out my ISP's assigned DNS servers. When I installed the ASA between the Netopia and my LAN switch, the DHCP server on the 5505 properly assigned everything to the clients on the LAN, but I had no DNS resolution (DNS server not reachable via nslookup) -- no traffic outbound at all, even bypassing DNS.

I have heard that DSL doesn't get along very will with Cisco equipment "out of the box", but having never worked with the two in tandem before, I'm not sure where to begin troubleshooting.

NAT? Bridging?

Thanks.

Steve
0
Comment
Question by:sf09er
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 6

Accepted Solution

by:
kuoh earned 500 total points
ID: 34893868
Have you contacted the ISP?  Usually the DSL modem is configured to provide the PPPOE credentials, but operates in bridge mode.  Then you simply configure the outside IP & GW on the ASA as usual.  You will also need to find out the ISP's DNS server IPs and enter them in the ASA's DHCP server options.

KuoH
0
 
LVL 34

Expert Comment

by:Istvan Kalmar
ID: 34894135
Did you enabled importing dns?

dhcpd auto_config outside
0
 

Author Closing Comment

by:sf09er
ID: 34901928
I simply had to disable DHCP and enable bridging on the DSL router, then connect the ASA, connect to the DSL using PPPoE, and I'm in business. Thanks.
0

Featured Post

Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

For months I had no idea how to 'discover' the IP address of the other end of a link (without asking someone who knows), and it drove me batty. Think about it. You can't use Cisco Discovery Protocol (CDP) because it's not implemented on the ASAs.…
This article is in regards to the Cisco QSFP-4SFP10G-CU1M cables, which are designed to uplink/downlink 40GB ports to 10GB SFP ports. I recently experienced this and found very little configuration documentation on how these are supposed to be confi…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Suggested Courses
Course of the Month10 days, 17 hours left to enroll

628 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question