ASA 5506x configured new interface. Outbound works but no inbound traffic.
Posted on 2016-10-18
I added a 2nd interface to ASA 5506x running 9.4 (2) 6 asdm 7.5 (2) 153 and configured it with a 2nd ISP. I now have Outside and Outside2.
I configured dynamic PAT and am able to send traffic out and receive replies (tested ping, http). This was done by setting a static route to use Outside2's gateway for test sites and then browsing/pinging from inside network.
However I have created several object NAT rules to forward RDP and HTTPS traffic. I have used the packet tracer to verify all ACLs are correct and NAT would work. However nothing works. I have enabled PING (icmp permit host (my IP) Outside2) however I am unable to ping. I have enabled HTTPS management access on Outside2 for my IP as well however I get nothing.
No pings, no ASDM, no inbound traffic. Outbound traffic works fine.
I have compared all configuration between the two outside interfaces but am unable to see anything which would cause this issue. ACL's, NAT, interface settings are all the same.