|
Posted by Legend on June 25, 2008, 6:20 pm
If you were Registered and logged in, you could reply and use other advanced thread options
Hi
> Hi,
>
> I need to do some IP address rearanging on my Cisco ASA 5505 as I am
> currently not using NAT and I want to get it to a configuration where
> my external IP addresses are on the outside interface, and I can use
> static NAT to map specific internal IP addresses to public IP
> addresses.
>
> I have a couple of questions:
>
> - Should this be possible using the ASA 5505, and a Cisco 837 on the
> outside network IP address block also?
yes.
will it work ?
no
depending upon your router config ...
you can not have same IP subnet located twice or in two places in the same
internetwork.
> - Does anyone have the default configuration file from the ASA 5505 as
> shipped from Cisco? I think I can get the firewall back to default
> state, but want to edit the file manually on my PC first.
http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/start.html#wp1055130
> - When I got the unit, I think I didn't have a license for a DMZ IP
> segment. I had a lot of material with the unit, but couldn't remember
> off hand whether I could get a free DMZ license from Cisco. Does
> anyone know if this is possible? The packaging is not here at the
> moment, but I will find it and try to recover the license if there is
> one.
Show version will tell you what your license type is.
you need Security plus, for full DMZ. With Base lic you DMZ can not make
connection inbound
>
> Thanks.
> Andrew.
HTH
Martin
|