Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 
New Member

Internet Router question

In my comany's internet router I could find a static route like below

ip route

where is the public ip of my external firewall , is the ip address of my ACS server .Now please explain to me what is the meaning of this .I didn't understand why Instead of private ip address of the firewall the public ip is used here.

Hall of Fame Super Silver

Re: Internet Router question

Hello Antony,

if your scenario is :

intranet -- FW --- Internet Router -- Internet

then your internet router is connected to the external/outside/public interface of the firewall the only valid next-hop for a static route is the ip address of the outside interface.

You can use as next-hop an ip address that you reach directly in a connected subnet and for which you have an ARP entry.

This command is there to allow to reach the ACS server for AAA so that you can use your ACS account when accessing the internet router.

if the internet router and the firewall are interconnected in a different way (the firewall is the most external device) or the internet router does NAT for all the enterprise what you see can be old and/or wrong.

Hope to help


CreatePlease to create content