Great! apparently this is on the resolved caveat list for ASA 8.0(4).

Evidently this is not the case =)

http://www.cisco.com/en/US/docs/security/asa/asa80/release/notes/arn804n.html



On Thu, May 14, 2009 at 6:01 PM, Dave Craddock <[email protected]> wrote:

> do you have ssh on the outside as you are using the interface and this is
> the asa's ssh address ?
>
>
>
> ________________________________
>
> From: [email protected] on behalf of Stuart Hare
> Sent: Thu 14/05/2009 18:07
> To: OSL Security; Cisco certification
> Subject: [OSL | CCIE_Security] LAB1B - ASA Static PAT Error
>
>
> Has anyone come across the following error when using static PAT.
>
> asa(config)# static (DMZ7,outside) tcp interface ssh 10.7.7.7 ssh netmask
> 255.255.255.255
> ERROR: unable to reserve port 22 for static PAT
> ERROR: unable to download policy
>
> Other static PAT statements are in and working correctly.
> static (DMZ8,outside) tcp 192.1.24.8 www 10.8.8.8 www netmask
> 255.255.255.255
> static (DMZ8,outside) tcp 192.1.24.8 telnet 10.8.8.8 telnet netmask
> 255.255.255.255
> static (DMZ8,outside) tcp 192.1.24.8 8080 8.8.8.8 www netmask
> 255.255.255.255
> static (DMZ7,outside) tcp interface https 10.7.7.7 https netmask
> 255.255.255.255
>
> Not came across this before, any ideas?
>
> Stu
>
> --
> Stuart Hare
>
> [email protected]
>
>
>
>


-- 
Stuart Hare

[email protected]

Reply via email to