ASA Outbound Access Problem

Unanswered Question
May 22nd, 2009
User Badges:

good morning guys!

we recently procured an ASA-5510 app. went thru the ASDM Setup wizard with External and Internal config. public and private IP's already established. accdg to the ASA doc, internal clients should be immediately able to get outbound access (internet) by default. doesn't work.

my ISP told me that he can ping my external interface after providing him the MAC. he advised me that i should be able to at least ping up to the gateway.

directly connecting the external line to a PC is ok. browsing and everything.

setup is as follows:

Mgt 0/0 : MANAGEMENT (default), DHCP enabled

Eth 0/0 : EXTERNAL StaticIP/30

Eth 0/1 : INTERNAL

PAT selected instead of NAT

Default security policies in effect.

please help.


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
jeremyault Sat, 05/23/2009 - 08:11
User Badges:

You need the following minimum config for interfaces, default route, and PAT. You do not need any ACLs applied for outbound traffic to work.


interface Ethernet0/0

nameif outside

security-level 0

ip address xx.xx.xx.xx

no shut


interface Ethernet0/1

nameif inside

security-level 100

ip address

no shut


route outside xx.xx.xx.xx


global (outside) 1 interface

nat (inside) 1


This Discussion