Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

Route email with cisco asa 5515

Posted on 2015-01-13
5
Medium Priority
?
17 Views
Last Modified: 2016-10-14
Hi:

I have a cisco ASA 5515X with two WAN connections and one LAN connection.

As far as I understand, I hace the firewall configured to allow SMTP traffic through WAN2 interface, but not through WAN1.

However, I'm having trouble sending email because the public IP is not matching the inverse DNS record. This record points to the public address of WAN2, but the email is labeled with the IP address of WAN1. How can this happen?

How do I force the outgoing emails to go through WAN2?

By the way, you will notice in the config file that WAN interfaces have private IP's. This is because there is an ADSL router between this interface and the public network.

Thanks
0
Comment
Question by:ScreenFox
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
5 Comments
 
LVL 47

Expert Comment

by:Craig Beck
ID: 40547889
No config is attached.
0
 

Author Comment

by:ScreenFox
ID: 40548297
Here it is.
cisco.txt
0
 

Author Comment

by:ScreenFox
ID: 40551051
anybody there?
0
 
LVL 47

Accepted Solution

by:
Craig Beck earned 2000 total points
ID: 40551064
Your default WAN link is WAN1, so all traffic will go down that link.  The problem is that the ASA doesn't do policy-based routing, so you can't pick and choose which interface different types of traffic are sent down.  To achieve this you'd need to put a separate ASA on each internet feed and use a standard IOS router to do PBR instead, to send traffic to the correct ISP.
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

We sought a budget ($5,000) firewall solution that would provide all the performance we needed with no single point of failure.  Hosting a SAAS web application in our datacenter, it was critical that we find a way to keep connectivity up and inbound…
Pop culture is prime bait for hackers seeking to infect user’s computers and mobile devices with malicious malware. Hackers know exactly what the latest trends are online and know how to use them to their advantage.
How to fix incompatible JVM issue while installing Eclipse While installing Eclipse in windows, got one error like above and unable to proceed with the installation. This video describes how to successfully install Eclipse. How to solve incompa…
In a question here at Experts Exchange (https://www.experts-exchange.com/questions/29062564/Adobe-acrobat-reader-DC.html), a member asked how to create a signature in Adobe Acrobat Reader DC (the free Reader product, not the paid, full Acrobat produ…
Suggested Courses

618 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question