ASA 5512 Config question

Posted on 2013-02-05
Medium Priority
Last Modified: 2013-03-14
I've configured an ASA 5512 and I'm not sure if the config is correct.  I wanted to see if anyone could glance at this config and see if they see any problems.  I'm in a situation where it needs to work immediately after it boots and I want to try to avoid any issues if I can.

I hope someone has a few minutes.  I really appreciate it.  Thanks.
Question by:jplagens
  • 2
LVL 18

Expert Comment

ID: 38858870
It looks fine.. What exactly this ASA need to do?

Accepted Solution

pgolding00 earned 1500 total points
ID: 38859377
dont know about:
route inside 1
because is not attached to an interface. this would work on a router, but not so sure about recursive routing lookup on asa. you definitely cant source route, which is sort-of what this is trying to do. just use:
route inside
no question that this will work.

otherwise, as above, what are you trying to achieve with it?

Author Comment

ID: 38859712
The issue was that this ASA 5512 was replacing an old Pix515e.  Due to the maintenance window I didn't have much time, so it was going to be pretty much unplug/unrack the Pix, put in the ASA, turn it on and it had to work.  I haven't done a lot of work with the new NAT commands in 8.3 or higher so I was stressing a little about it working.

I discovered that inside route to wasn't needed.  No one new what it was so I removed it.

The only changes I made was that I added a new object:

object network OBJ_ANY
nat (inside,outside) dynamic interface

and I forgot to apply the access-list:

access-group inbound in interface outside
LVL 18

Expert Comment

ID: 38859816
Yeah, I was just going to point out, that you will not be able to access Internet unless you configure dynamic NAT, what you have done.

Featured Post

Hire Technology Freelancers with Gigs

Work with freelancers specializing in everything from database administration to programming, who have proven themselves as experts in their field. Hire the best, collaborate easily, pay securely, and get projects done right.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

When speed and performance are vital to revenue, companies must have complete confidence in their cloud environment.
This article explains the fundamentals of industrial networking which ultimately is the backbone network which is providing communications for process devices like robots and other not so interesting stuff.
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

627 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question