Solved

Route email with cisco asa 5515

Posted on 2015-01-13
5
12 Views
Last Modified: 2016-10-14
Hi:

I have a cisco ASA 5515X with two WAN connections and one LAN connection.

As far as I understand, I hace the firewall configured to allow SMTP traffic through WAN2 interface, but not through WAN1.

However, I'm having trouble sending email because the public IP is not matching the inverse DNS record. This record points to the public address of WAN2, but the email is labeled with the IP address of WAN1. How can this happen?

How do I force the outgoing emails to go through WAN2?

By the way, you will notice in the config file that WAN interfaces have private IP's. This is because there is an ADSL router between this interface and the public network.

Thanks
0
Comment
Question by:ScreenFox
  • 2
  • 2
5 Comments
 
LVL 45

Expert Comment

by:Craig Beck
ID: 40547889
No config is attached.
0
 

Author Comment

by:ScreenFox
ID: 40548297
Here it is.
cisco.txt
0
 

Author Comment

by:ScreenFox
ID: 40551051
anybody there?
0
 
LVL 45

Accepted Solution

by:
Craig Beck earned 500 total points
ID: 40551064
Your default WAN link is WAN1, so all traffic will go down that link.  The problem is that the ASA doesn't do policy-based routing, so you can't pick and choose which interface different types of traffic are sent down.  To achieve this you'd need to put a separate ASA on each internet feed and use a standard IOS router to do PBR instead, to send traffic to the correct ISP.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
VPN tunnel up, but no pings or remote resource access 13 120
Sonicwall Possible port scan dropped 5 51
Routing between two networks? 10 56
By pass website on ASA for Websense 4 71
Occasionally, we encounter connectivity issues that appear to be isolated to cable internet service.  The issues we typically encountered were reset errors within Internet Explorer when accessing web sites or continually dropped or failing VPN conne…
Imagine you have a shopping list of items you need to get at the grocery store. You have two options: A. Take one trip to the grocery store and get everything you need for the week, or B. Take multiple trips, buying an item at a time, to achieve t…
This Micro Tutorial demonstrates using Microsoft Excel pivot tables, how to reverse engineer competitors' marketing strategies through backlinks.
With Secure Portal Encryption, the recipient is sent a link to their email address directing them to the email laundry delivery page. From there, the recipient will be required to enter a user name and password to enter the page. Once the recipient …

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question