{"id":278,"date":"2012-09-24T13:10:04","date_gmt":"2012-09-24T12:10:04","guid":{"rendered":"https:\/\/davidmichaelbrown.com\/?p=278"},"modified":"2012-09-25T06:24:30","modified_gmt":"2012-09-25T05:24:30","slug":"cisco-877-bridge-with-asa5505","status":"publish","type":"post","link":"https:\/\/davidmichaelbrown.com\/?p=278","title":{"rendered":"Cisco 877 bridge with ASA5505"},"content":{"rendered":"\n<!-- Facebook Like Button v1.9.6 BEGIN [http:\/\/blog.bottomlessinc.com] -->\n<iframe src=\"http:\/\/www.facebook.com\/plugins\/like.php?href=https%3A%2F%2Fdavidmichaelbrown.com%2F%3Fp%3D278&amp;layout=standard&amp;show_faces=false&amp;width=450&amp;action=like&amp;colorscheme=light\" scrolling=\"no\" frameborder=\"0\" allowTransparency=\"true\" style=\"border:none; overflow:hidden; width:450px; height: 30px; align: left; margin: 2px 0px 2px 0px\"><\/iframe>\n<!-- Facebook Like Button END -->\n<p>I have recently had a need to bridge a Cisco 877 and Cisco ASA5505 as I only had one IP Address available to me via a BE ADSL service.<\/p>\n<p><strong>Cisco 877 bridge configuration:<\/strong><br \/>\nBuilding configuration&#8230;<\/p>\n<p>Current configuration : 1103 bytes<br \/>\n!<br \/>\nversion 12.4<br \/>\nno service pad<br \/>\nservice timestamps debug datetime msec<br \/>\nservice timestamps log datetime msec<br \/>\nno service password-encryption<br \/>\n!<br \/>\nhostname 877BridgedASA<br \/>\n!<br \/>\nboot-start-marker<br \/>\nboot-end-marker<br \/>\n!<br \/>\nno aaa new-model<br \/>\n!<br \/>\ndot11 syslog<br \/>\nip cef<br \/>\n!<br \/>\nusername dMb privilege 15 secret 0 password<br \/>\n!<br \/>\narchive<br \/>\nlog config<br \/>\nhidekeys<br \/>\n!<br \/>\nbridge irb<br \/>\n!<br \/>\ninterface ATM0<br \/>\nno ip address<br \/>\nno ip route-cache cef<br \/>\nno ip route-cache<br \/>\nno atm ilmi-keepalive<br \/>\ndsl operating-mode auto<br \/>\n!<br \/>\ninterface ATM0.1 point-to-point<br \/>\nno ip route-cache<br \/>\natm route-bridged ip<br \/>\npvc 0\/101<br \/>\nencapsulation aal5snap<br \/>\n!<br \/>\nbridge-group 1<br \/>\n!<br \/>\ninterface FastEthernet0<br \/>\nswitchport access vlan 2<br \/>\n!<br \/>\ninterface FastEthernet1<br \/>\nshutdown<br \/>\n!<br \/>\ninterface FastEthernet2<br \/>\nshutdown<br \/>\n!<br \/>\ninterface FastEthernet3<br \/>\nshutdown<br \/>\n!<br \/>\ninterface Vlan1<br \/>\nno ip address<br \/>\nno ip route-cache cef<br \/>\nno ip route-cache<br \/>\n!<br \/>\ninterface Vlan2<br \/>\nno ip address<br \/>\nbridge-group 1<br \/>\n!<br \/>\nip forward-protocol nd<br \/>\n!<br \/>\nno ip http server<br \/>\nno ip http secure-server<br \/>\n!<br \/>\ncontrol-plane<br \/>\n!<br \/>\nbridge 1 protocol ieee<br \/>\n!<br \/>\nline con 0<br \/>\nno modem enable<br \/>\nline aux 0<br \/>\nline vty 0 4<br \/>\nlogin local<br \/>\n!<br \/>\nscheduler max-task-time 5000<br \/>\nend<\/p>\n<p><strong>Cisco ASA5505 configuration<\/strong><br \/>\nASA Version 8.4(3)<br \/>\n!<br \/>\nhostname ciscoasa<br \/>\nenable password passwordhere encrypted<br \/>\npasswd passwordhere encrypted<br \/>\nnames<br \/>\n!<br \/>\ninterface Ethernet0\/0<br \/>\ndescription Link To Cisco 877 Router<br \/>\nswitchport access vlan 2<br \/>\n!<br \/>\ninterface Ethernet0\/1<br \/>\n!<br \/>\ninterface Ethernet0\/2<br \/>\n!<br \/>\ninterface Ethernet0\/3<br \/>\n!<br \/>\ninterface Ethernet0\/4<br \/>\n!<br \/>\ninterface Ethernet0\/5<br \/>\n!<br \/>\ninterface Ethernet0\/6<br \/>\n!<br \/>\ninterface Ethernet0\/7<br \/>\n!<br \/>\ninterface Vlan1<br \/>\nnameif inside<br \/>\nsecurity-level 100<br \/>\nip address 192.168.229.254 255.255.255.0<br \/>\n!<br \/>\ninterface Vlan2<br \/>\nnameif outside<br \/>\nsecurity-level 0<br \/>\nip address 78.xxx.xxx.193 255.255.248.0<br \/>\n!<br \/>\nftp mode passive<br \/>\nobject network obj_any<br \/>\nsubnet 0.0.0.0 0.0.0.0<br \/>\npager lines 24<br \/>\nlogging asdm informational<br \/>\nmtu inside 1500<br \/>\nmtu outside 1500<br \/>\nicmp unreachable rate-limit 1 burst-size 1<br \/>\nno asdm history enable<br \/>\narp timeout 14400<br \/>\n!<br \/>\nobject network obj_any<br \/>\nnat (inside,outside) dynamic interface<br \/>\n!<br \/>\nnat (inside,outside) after-auto source dynamic any interface<br \/>\nroute outside 0.0.0.0 0.0.0.0 78.xxx.xxx.1 1<br \/>\ntimeout xlate 3:00:00<br \/>\ntimeout pat-xlate 0:00:30<br \/>\ntimeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02<br \/>\ntimeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00<br \/>\ntimeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00<br \/>\ntimeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute<br \/>\ntimeout tcp-proxy-reassembly 0:01:00<br \/>\ntimeout floating-conn 0:00:00<br \/>\ndynamic-access-policy-record DfltAccessPolicy<br \/>\nuser-identity default-domain LOCAL<br \/>\nhttp server enable<br \/>\nhttp 0.0.0.0 0.0.0.0 inside<br \/>\nhttp 0.0.0.0 0.0.0.0 outside<br \/>\nno snmp-server location<br \/>\nno snmp-server contact<br \/>\nsnmp-server enable traps snmp authentication linkup linkdown coldstart warmstart<br \/>\ncrypto ca trustpoint _SmartCallHome_ServerCA<br \/>\ncrl configure<br \/>\ntelnet timeout 5<br \/>\nssh 0.0.0.0 0.0.0.0 outside<br \/>\nssh timeout 5<br \/>\nconsole timeout 0<\/p>\n<p>dhcpd auto_config outside<br \/>\n!<br \/>\nthreat-detection basic-threat<br \/>\nthreat-detection statistics access-list<br \/>\nno threat-detection statistics tcp-intercept<br \/>\nwebvpn<br \/>\n!<br \/>\nprompt hostname context<br \/>\ncall-home reporting anonymous<br \/>\nCryptochecksum:6570e0d68627aa70f6d9540ccb909aa1<br \/>\n: end<\/p>\n\n<!-- Facebook Like Button v1.9.6 BEGIN [http:\/\/blog.bottomlessinc.com] -->\n<iframe src=\"http:\/\/www.facebook.com\/plugins\/like.php?href=https%3A%2F%2Fdavidmichaelbrown.com%2F%3Fp%3D278&amp;layout=standard&amp;show_faces=false&amp;width=450&amp;action=like&amp;colorscheme=light\" scrolling=\"no\" frameborder=\"0\" allowTransparency=\"true\" style=\"border:none; overflow:hidden; width:450px; height: 30px; align: left; margin: 2px 0px 2px 0px\"><\/iframe>\n<!-- Facebook Like Button END -->\n","protected":false},"excerpt":{"rendered":"<p>I have recently had a need to bridge a Cisco 877 and Cisco ASA5505 as I only had one IP Address available to me via a BE ADSL service. Cisco 877 bridge configuration: Building configuration&#8230; Current configuration : 1103 bytes ! version 12.4 no service pad service timestamps debug datetime msec service timestamps log datetime &#8230; <span class=\"more\"><a class=\"more-link\" href=\"https:\/\/davidmichaelbrown.com\/?p=278\">[Read more&#8230;]<\/a><\/span><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"ngg_post_thumbnail":0,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_post_was_ever_published":false},"categories":[27,26,23],"tags":[62,61,60,63,94],"class_list":["entry","post","publish","author-david-brown","post-278","format-standard","category-cisco","category-geeky-stuff","category-work-related","post_tag-62","post_tag-61","post_tag-asa","post_tag-bridge-mode","post_tag-cisco"],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=\/wp\/v2\/posts\/278","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=278"}],"version-history":[{"count":9,"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=\/wp\/v2\/posts\/278\/revisions"}],"predecessor-version":[{"id":288,"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=\/wp\/v2\/posts\/278\/revisions\/288"}],"wp:attachment":[{"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=278"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=278"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/davidmichaelbrown.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=278"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}