I haven't worked with the ASA/PIX line in a while, but if you're doing
static NAT entries it requires proxy arp to work. Essentially needed
anytime you have NAT entries for IP's other than what is assigned to
the psychical interfaces.

The documentation was clear on the feature years ago, i'd check it out :)

On Fri, Oct 12, 2012 at 2:02 PM, Jay Hennigan <[email protected]> wrote:

> On 10/12/12 10:52 AM, Scott Voll wrote:
> > what "could" break if I turn Proxy arp off on my inside or DMZ interface
> of
> > my ASA?
>
> Usually things that are misconfigured in the first place like
> inconsistent subnet masks, missing or wrong routes, etc.
>
> --
> Jay Hennigan - CCIE #7880 - Network Engineering - [email protected]
> Impulse Internet Service  -  http://www.impulse.net/
> Your local telephone and internet company - 805 884-6323 - WB6RDV
> _______________________________________________
> cisco-nsp mailing list  [email protected]
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
>
_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to