cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
436
Views
0
Helpful
5
Replies

Static Entry - ASA

nasr.khan
Level 1
Level 1

Hello,

OSPF is running between L3Switch and ASA but still need static entry on L3Switch to forward traffic to ASA.

ip route 0.0.0.0 0.0.0.0 192.168.1.10

Can someone explain why?

1 Accepted Solution

Accepted Solutions

Nasr

"On ASA I have default route like this

ip route 0.0.0.0 0.0.0.0 80.11.22.33 ( ISP Router)

and internal routing via OSPF."

But have you told the ASA to send this default route to the L3 switch with the default-information originate command -

http://www.cisco.com/en/US/docs/security/asa/asa72/command/reference/d2_72.html#wp1773168

Jon

View solution in original post

5 Replies 5

Jon Marshall
Hall of Fame
Hall of Fame

Nasr

Have you configured the ASA to generate a default route and send it to the L3 switch ?

If not then you would indeed need a static route on the L3 switch assuming the ASA is for Internet connectivity.

Jon

On ASA I have default route like this

ip route 0.0.0.0 0.0.0.0 80.11.22.33 ( ISP Router)

and internal routing via OSPF.

I understand its needed on ASA to add static route for ISP Router to send all traffic on internet.

but dont understand why I need static route on L3Switch if ospf is running.

Nasr

"On ASA I have default route like this

ip route 0.0.0.0 0.0.0.0 80.11.22.33 ( ISP Router)

and internal routing via OSPF."

But have you told the ASA to send this default route to the L3 switch with the default-information originate command -

http://www.cisco.com/en/US/docs/security/asa/asa72/command/reference/d2_72.html#wp1773168

Jon

Thanks a Lot, I got what you mean.

No problem, glad to help.

Jon

Review Cisco Networking products for a $25 gift card