Inside (Webserver)2.182/28 ---------2.181/28(Inside) (ASA5200)(Outside) 2.174/30 -----Leased Line --- -2.173/30 --- Internet.
Hiện tại trong Inside (Webserver) không ping và đi internet được (nhưng đừng từ ASA thì ping 8.8.8.8 ok và yahoo ok).
File cấu hình :
interface GigabitEthernet0/0
nameif Outside
security-level 100
ip address x.x.2.174 255.255.255.252
!
interface GigabitEthernet0/1
shutdown
no nameif
no security-level
no ip address
!
interface GigabitEthernet0/2
shutdown
no nameif
no security-level
no ip address
!
interface GigabitEthernet0/3
nameif Inside
security-level 100
ip address x.x.2.181 255.255.255.240
!
interface Management0/0
shutdown
no nameif
no security-level
no ip address
!
passwd 2KFQnbNIdI.2KYOU encrypted
ftp mode passive
dns domain-lookup Outside
dns server-group DefaultDNS
name-server 8.8.8.8
object-group icmp-type ICMP_GRP
icmp-object echo
icmp-object echo-reply
icmp-object information-reply
icmp-object information-request
icmp-object time-exceeded
icmp-object timestamp-reply
icmp-object traceroute
access-list Inside_access_in extended permit icmp any any object-group ICMP_GRP
access-list Inside_access_in extended permit tcp any any eq www
access-list Inside_access_in extended permit tcp any any eq ssh
pager lines 24
logging enable
logging asdm informational
mtu Outside 1500
mtu Inside 1500
no failover
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-523.bin
no asdm history enable
arp timeout 14400
access-group Inside_access_in in interface Outside
access-group Inside_access_in in interface Inside
route Outside 0.0.0.0 0.0.0.0 x.x.2.173 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout uauth 0:05:00 absolute
aaa authentication ssh console LOCAL
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart
telnet timeout 5
ssh timeout 5
ssh version 2
console timeout 0
!
!
prompt hostname context
Cryptochecksum:fa2ecc9e2ff38319b35d967c3c2730a8
Nhờ anh em hướng dẫn giúp.
Hiện tại trong Inside (Webserver) không ping và đi internet được (nhưng đừng từ ASA thì ping 8.8.8.8 ok và yahoo ok).
File cấu hình :
interface GigabitEthernet0/0
nameif Outside
security-level 100
ip address x.x.2.174 255.255.255.252
!
interface GigabitEthernet0/1
shutdown
no nameif
no security-level
no ip address
!
interface GigabitEthernet0/2
shutdown
no nameif
no security-level
no ip address
!
interface GigabitEthernet0/3
nameif Inside
security-level 100
ip address x.x.2.181 255.255.255.240
!
interface Management0/0
shutdown
no nameif
no security-level
no ip address
!
passwd 2KFQnbNIdI.2KYOU encrypted
ftp mode passive
dns domain-lookup Outside
dns server-group DefaultDNS
name-server 8.8.8.8
object-group icmp-type ICMP_GRP
icmp-object echo
icmp-object echo-reply
icmp-object information-reply
icmp-object information-request
icmp-object time-exceeded
icmp-object timestamp-reply
icmp-object traceroute
access-list Inside_access_in extended permit icmp any any object-group ICMP_GRP
access-list Inside_access_in extended permit tcp any any eq www
access-list Inside_access_in extended permit tcp any any eq ssh
pager lines 24
logging enable
logging asdm informational
mtu Outside 1500
mtu Inside 1500
no failover
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-523.bin
no asdm history enable
arp timeout 14400
access-group Inside_access_in in interface Outside
access-group Inside_access_in in interface Inside
route Outside 0.0.0.0 0.0.0.0 x.x.2.173 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout uauth 0:05:00 absolute
aaa authentication ssh console LOCAL
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart
telnet timeout 5
ssh timeout 5
ssh version 2
console timeout 0
!
!
prompt hostname context
Cryptochecksum:fa2ecc9e2ff38319b35d967c3c2730a8
Nhờ anh em hướng dẫn giúp.
Comment