We help IT Professionals succeed at work.

Sophos UTM and Cisco ASA 5005 NAT/routing

342 Views
Last Modified: 2017-03-28
Hi,

Our enviroment

My LAN= 192.168.157.x

Customer LAN 2.14.224.x

My Sophos UTM has 192.168.157.70 ip and an interface with 172.16.0.3 wich is a exchange LAN created between out both LAN networks

Cisco ASA has 172.16.0.1 and some objetcs defined NAT, for example:

PC1 192.168.157.1 at ASA 172.16.0.1 and the, a rule to route traffic to 2.14....network

At my Sopho there is a SourceNAT wich translates source ip 192.168.157.1 to 172.16 network changing  to 172.16.0.1

Of course there is something wrong because  I can not  ping or telnet ports from my computer at 192.168.157.x

Any ideas?

Reagards
Comment
Watch Question

Author

Commented:
Hi,

Any idea?

Regards and Thanks
Bud DurlandDirector of IT
CERTIFIED EXPERT

Commented:
I'm having trouble sorting out how things are connected.  You say the customer's network is on 2.14.224.X.  This looks like an internet -facing network address.  Are you trying to connect the two networks over the internet?  It appears you have an internal network fof 192.168.157.x.   Is the 172.16.X.X network the customers internal network?

Author

Commented:
Hi,

Not...

My network is 192.168.157.x and my firewall 192.168.157.70

My customer has installed a firewall and router and it's remote network is 2.14.x.x.They use an Asa firewall  to stablish a new network between both called 172.16.x.x.
Bud DurlandDirector of IT
CERTIFIED EXPERT

Commented:
It sounds to me like you should set up am IPSec VPN between the Sophos UTM and the Cisco.
Pete LongTechnical Architect
CERTIFIED EXPERT
Distinguished Expert 2019

Commented:
Network diagram would help m8 :)
Commented:
This one is on us!
(Get your first solution completely free - no credit card required)
UNLOCK SOLUTION
CERTIFIED EXPERT

Commented:
No comment has been added to this question in more than 21 days, so it is now classified as abandoned.

I have recommended this question be closed as follows:

Accept: heze54 (https:#a41216585)

If you feel this question should be closed differently, post an objection and the moderators will review all objections and close it as they feel fit. If no one objects, this question will be closed automatically the way described above.

frankhelk
Experts-Exchange Cleanup Volunteer
Unlock the solution to this question.
Join our community and discover your potential

Experts Exchange is the only place where you can interact directly with leading experts in the technology field. Become a member today and access the collective knowledge of thousands of technology experts.

*This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

OR

Please enter a first name

Please enter a last name

8+ characters (letters, numbers, and a symbol)

By clicking, you agree to the Terms of Use and Privacy Policy.