Solved

Can you setup static route between multiple ASA-5505s?

Posted on 2014-04-24
4
322 Views
Last Modified: 2014-06-02
Greetings.  I have 1 site that has 2 ASA 5505's... one is the default gateway for internet access and the other is for a site-to-site VPN connection to a remote building (which also houses an ASA 5505)

Right now any client PCs that need to connect over to the other site I'm adding a route statement directly to their local routing table.

I'm trying to eliminate having to do that by setting a static route in the default gateway ASA that says to route traffic requests for the remote network to the secondary ASA 5505.   I can not seem to get this working.  Is this possible to do?  I'm getting logs that say

"inbound tcp connection denied flags syn on interface inside"

The network at site A is 10.0.0.x    1 ASA 5505 is 10.0.0.254, the one for the site to site is 10.0.0.250.

At the remote site the IP is 10.0.1.250
0
Comment
Question by:debbiez
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
4 Comments
 
LVL 10

Expert Comment

by:Rafael
ID: 40021441
Have you tried to use the ASDM wizard ?
0
 
LVL 6

Assisted Solution

by:Hassan Besher
Hassan Besher earned 500 total points
ID: 40021479
#same-security-traffic permit inter-interface
0
 

Author Comment

by:debbiez
ID: 40021488
I enabled same security traffic permit inter-face.   Do I have to do that on ALL the ASAs?
0
 
LVL 6

Accepted Solution

by:
Hassan Besher earned 500 total points
ID: 40021531
at inside interface:

ciscoasa(config)# same-security-traffic permit inter-interface
ciscoasa(config)# same-security-traffic permit intra-interface
0

Featured Post

Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Hello All, I have been training on Multicast for a while now and whenever I start the topic , I find out that my friends /  Colleagues mention that they do not know how to test Multicast Joins. As most of the multicast would be video traffic and …
Every server (virtual or physical) needs a console: and the console can be provided through hardware directly connected, software for remote connections, local connections, through a KVM, etc. This document explains the different types of consol…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question