mahesh18

Member Since: Mar 05, 2005

User Badges:

English
mahesh18 commented on Adding Dynamic Policy NAT to ASA in Firewalling 4 months ago

So i can remove all the old config with nat and global group 1 After that I add new config with nat...

mahesh18 commented on Adding Dynamic Policy NAT to ASA in Firewalling 4 months ago

Hi Philip, So you mean to say for below config  nat (inside) 1 0.0.0.0 0.0.0.0 global (outside) 1...

mahesh18 commented on How to check total number of Xlate on single public IP in Firewalling 6 months ago

I checked it gives total number of xlate connections not from single ip. I tested with show xlate...

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

I now assign static IP to fa4 still same thing.

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

config of AP ap#show runBuilding configuration... Current configuration : 1594 bytes!version 12....

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

Yes I can ping Internet sites sourcing from vlan 10. Also the AP interface is configured fine Will...

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

Interface                  IP-Address      OK? Method Status                ProtocolFastEthernet0...

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

Hi Reza, I followed this url now https://networklessons.com/cisco/cisco-1941w-wireless-...

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

Hi Reza, I put the new config with management and user wifi vlan still same thing. HEre is config...

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

tested with earlier 10.20.30.5 same thing. If I use subnet 10.20.40.0/24  but dhcp pool in router...

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

I was reading on internet that we can assign any IP to interface wlan-ap0 ip address 2.2.2.2 255....

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

This one is router with built in AP.

mahesh18 commented on unable to ping internet sites Via Wireless Router in LAN, Switching and Routing 6 months ago

Hi Reza, I try from source IP 10.20.30.101 same thing. Subnet for wifi is 10.20.30.0/24 it has...

mahesh18 commented on Can Router pass traffic for this network in LAN, Switching and Routing 10 months ago

Switch interface 1/5 will connect to AP as trunk port carrying vlans  say vlan 10  10.220.35.x say...

mahesh18 commented on show ip cef shows routes to inetrnal network in LAN, Switching and Routing 11 months ago

Many thanks Reza and peter. Best Regards Mahesh

mahesh18 commented on show ip cef shows routes to inetrnal network in LAN, Switching and Routing 11 months ago

Hi Reza, Yes we are getting full BGP routes from the ISP. Firewall has default route pointing to...

mahesh18 commented on Advertising prefixt list BGP to secondary ISP in LAN, Switching and Routing 11 months ago

Thanks Reza for steping in. Regards Mahesh

mahesh18 commented on show ip cef shows routes to inetrnal network in LAN, Switching and Routing 11 months ago

Hi Peter, On Cisco ASR1 when I check the config via show run it does not show any default static...

mahesh18 commented on show ip cef shows routes to inetrnal network in LAN, Switching and Routing 11 months ago

Here is MS word of diagram attached. Thanks for correction Reza!

mahesh18 commented on show ip cef shows routes to inetrnal network in LAN, Switching and Routing 11 months ago

Hi Peter, I have attached the diagram. Regards MAhesh

mahesh18 commented on Advertising prefixt list BGP to secondary ISP in LAN, Switching and Routing 11 months ago

Many thanks Rick for answering the question and clearing my all doubts. Best Regards Mahesh

mahesh18 commented on Advertising prefixt list BGP to secondary ISP in LAN, Switching and Routing 11 months ago

Hi Rick, Second ISP I can use For  prefix list coming FROM  second ISP I can use same list as ISP1...

mahesh18 commented on Advertising prefixt list BGP to secondary ISP in LAN, Switching and Routing 11 months ago

Hi Rick, Thanks for explaining in so detail. Yes I want both Prefix list  TO and FROM the ISP....

mahesh18 commented on Advertising prefixt list BGP to secondary ISP in LAN, Switching and Routing 11 months ago

Hi Rick, I check the prefix list for existing ISP they are quite similar. I agree someone knowing...

mahesh18 commented on show log does not show traffic in Firewalling 11 months ago

Many thanks Simrid

mahesh18 commented on Cannot ping server from firewall in Firewalling 12 months ago

there was an access list on inside interface for ping traffic  and when I added server subnet to it...

mahesh18 commented on Nat reverse path failure in Firewalling 1 year ago

I need to make two ACL from DMZ  to fix the issue Regards MAhesh

mahesh18 commented on show log does not show traffic in Firewalling 1 year ago

Here is output      show run logginglogging enablelogging timestamplogging console criticallogging...

mahesh18 commented on show log does not show traffic in Firewalling 1 year ago

show logs shows this only  second, max configured rate is 5; Cumulative total count is 779Jun 30...

mahesh18 commented on show log does not show traffic in Firewalling 1 year ago

will try that next week regards Mahesh

mahesh18 commented on Nat reverse path failure in Firewalling 1 year ago

try that still no luck. when I try the policy nat it shows that address is used in static nat? Is...

mahesh18 commented on Nat reverse path failure in Firewalling 1 year ago

Hi, From inside to DMZ all is ok. Can I use this ACL for traffic flow from DMZ to inside ...

mahesh18 commented on Nat reverse path failure in Firewalling 1 year ago

so if I use this ACL and NAT then it should not cause any outage if traffic is flowing between host...

mahesh18 commented on Nat reverse path failure in Firewalling 1 year ago

Thanks for very great and detailed explanation. I already have ACL from DMZ to inside that allows...

mahesh18 commented on Purpose of Intermediate 1,2 root and server certificate in VPN 1 year ago

Many thanks Aditya. Regards MAhesh

mahesh18 commented on Purpose of Intermediate 1,2 root and server certificate in VPN 1 year ago

Hi Aditya, If you can explain me purpose of each cert that will be much appreciated? Regards...

mahesh18 commented on PIM Group address in LAN, Switching and Routing 1 year ago

Many thanks Paul!

mahesh18 commented on ACL for syslog traffic going via ASA in Firewalling 1 year ago

Many thanks Karsten.

mahesh18 commented on syslog server on outside interface in Firewalling 1 year ago

Many Thank Mike!

mahesh18 commented on ASA and multicast connection in Firewalling 1 year ago

correction it is 224.0.0.22.

mahesh18 commented on ssl vpn and acl to restrict access to inside network in Firewalling 1 year ago

Many thanks Dinesh.

mahesh18 commented on Verify NAT translations on 2811 in LAN, Switching and Routing 1 year ago

Hi Reza, I checked there is no ACL 101 so does this mean no NAT is configured and it is not...

mahesh18 commented on ASA with ssl vpn with no acl in outside interface in Firewalling 1 year ago

Many thanks Aditya. Regards Mahesh

mahesh18 commented on %ASA-7-710005: UDP request discarded port 137 in Firewalling 1 year ago

thanks a lot will look into this. Regards Mahesh

mahesh18 commented on ASA with ssl vpn with no acl in outside interface in Firewalling 1 year ago

here is output  show run all sysoptno sysopt connection timewaitsysopt connection tcpmss...

mahesh18 commented on %ASA-7-710005: UDP request discarded port 137 in Firewalling 1 year ago

as far as i know this ASA passes some video traffic?

mahesh18 commented on %ASA-7-710005: UDP request discarded port 137 in Firewalling 1 year ago

Hi Aditya, How can i stop these messages from coming to firewall? Regards Mahesh

mahesh18 commented on L2L tunnel debug shows IPSec SA proposals found unacceptable! in VPN 1 year ago

Hi Aditya, Thanks for explain me that. I will visit the remote site and check the config of it....

mahesh18 commented on L2L tunnel debug shows IPSec SA proposals found unacceptable! in VPN 1 year ago

How can I check the encryption domain?

Bio

User Badges:

mahesh18's Stats

Points77
Discussion started 1050
Answers marked as Correct 3
Endorsed 0
Content Rated 1754