Can we do MAC Address based routing in ASA5540

I have a network setup where two servers from inside need to communicate with a remote network via 2 VPN gateways. The destinations are same.
However, the chalange is each server need to follow it's own VPN gateway. Since i can't configure PBR (policy based routing) in ASA, can i configure something like MAC Address based routing. I can't use destination based routing since the remote network are reachable from the both VPN Gateways.
Advise needed.
Thanks in advance.
Regards,
R.Siva
Network Security Engineer.

Hi
I am not shure i follow you correct here.
You want 2 servers to speak to the same network but over two different vpn units ?
If this is so then this could work
Just set the route to the other network on server 1 to the vpn gate 1
and route the other network from server 2 to the vpngate 2.
in windows the command is route add.
good luck
hth

Similar Messages

  • How can I find MAC address based on the serial number of a missing IpodTouch 4th Gen?

    My Ipod touch 4th Generation is lost.  If I can find the MAC address, the Univeristy can help locate the device.  I have the serial number, is there any way I can find the MAC address based on the serial number?  I did not install a third party app on the IPod to help find it and it is not registered on iCloud, but I used it on iCloud.  Any ideas are greatly appreciated.

    Did you turn on FindMyiPd is Settings>iCloud and is the iPod connected to wifi? That is all that is needed for for Apple FindMyiPhone
    Maybe Apple can find the MAC address
    Apple - Support - iPod touch - Contact Us
    Your question has been asked in the past but no one has responded if Apple could actually help

  • Ping problem in the neighborhood and Msan can see the mac address of router

    Hi everyone
     i have a router 1941/K9 with card EHWIC-4SHDSL-EA ,i have configure this card in my router , the problem is I can not ping the ip @ Neighbourhood and the MSAN can't also  see the mac-address of the router  do you notice that the interface in the MSAN and in the router is UP  / UP
    anybody help me

    Hi,
    An ethernet interface will be always up/up and it goes down only if there is problem between the given port and the connected one. The issue can be anywhere else in the middle.

  • Finding OLD MAC address through Router.

    Sir, 
    I lost my laptop (Dell Inspiron 5521 15r) and only have its box which contains serial number 6CRC9W1 , order number 920181961 and etc but dont have MAC address. I asked dell about that but they are not helping me to get mac. Please tell me if there is any
    way to get old mac addresses through router to which my laptop was connected. Thanks.

    You can't. There is no way to know what the MAC was.
    The MAC is tied to the network adapter, not the Laptop, and hence not the Service Tag.  Since the Laptop probably had a wired adapter and a wireless adapter,...there would have been two different MACs.
    What good would it be even if you knew what it was?

  • Need to add MAC address to router

    Any ideas on when you get an error message and how I remove the ACL (access control list)
    Try to setup the extender on the same room where the router is installed.
    - If MAC Access list of MAC Filtering is enabled on the router, make sure to add the MAC address of the extender.
    - Try to turn off and turn on all of your devices to refresh the network.
    Need to add MAC address to router somehow 
    I am tryign to follow Netgears's kb
    http://kb.netgear.com/app/answers/detail/a_id/22034

    What model Fios router do you have?
    If it's an Actiontec I belive you cannot do what you are attempting to do as it's not supported on that router
    See
    https://forums.verizon.com/t5/Home-Networking/Actiontec-router-does-not-support-wireless-range-exten...

  • How can i fix mac address?

    I have a question.
    some of application see mac address for authorization.
    but azure pc seems to change its mac address when rebooting.
    how can i fix mac address if rebooting ?

    Hi Munyamunya;
    A very good question indeed.
    As of now MAC address cannot be kept persistent permanently there are several scenarios where a mac address can change, A. Service Healing B. Manual Stoppage of VM from  the Portal.C. Upgrades/ Downgrades of Cores etc..
    As specific as it gets if you would like the MAC to be persistent only for reboots, you could create a Regional Vnet and this would keep the MAC intact only on reboots, however service healing and Stopped Deallocated VM are bound to let the VM loose their
    mac address.
    A permanent solution would definitely be beneficial to all, you could pass on  your valuable feedback through this
    link.
    Hopes this helps.
    Warm Regards
    Prasant

  • How can i synchronize mac address book and calendar to icloud

    how can i synchronize mac address book and calendar to iclod?

    What version of OSX do you have.

  • Can't change MAC address of my wireless card on Windows XP

    Dear Forum Members,
    I have recently bought a notebook, Lenovo IdeaPad G550L (I haven't found section for the G series here on the forum) and would like to use its WiFi adapter (BCM4310 according to Everest) with explicitly changed MAC address. I installed the recommended driver, available from Lenovo's website, version 5.10.38.14. I tried the common way to change the MAC address, went to Control Panel -> Network Interfaces -> Broadcom Wireless Network Adapter -> Configure... -> Advanced -> Locally administered MAC address, and changed it to a different address (without ":" or any separator characters). Unfortunately this common solution won't work at all. Although, no error messages are produced when changing it (so it seems successful) my wireless router shows me the original MAC address of my integrated wifi card. Tried to restart my computer, my router, everything.
    * Tried different drivers, downloaded a driver from HP which had a separate wireless configurator, Broadcom Wireless Utility. It worked like the driver from Lenovo (except this one hasn't got the utility), but I was still unable to change my MAC address.
    * Tried a different driver from SoftPedia, version 5.10.79.14 (this is newer than Lenovo's), it didn't work either.
    * Tried Nathan True's MACShift utility. It seemed to change the MAC address, but my router showed the original, so it didn't.
    * Tried to look for official Broadcom drivers on www.broadcom.com but found nothing for BCM4310.
    * Finally, I booted my alternative OS, the latest Ubuntu Linux, and used the kernel driver b43 for my wireless adapter. I tried to change my MAC address using the command ifconfig wlan0 hw ether .... and connected to my network. It worked, my router showed the changed MAC so the hardware (or the firmware) is capable of doing this by the right driver/firmware.
    I tried to address Broadcom with the issue, sent them a letter like this post they replied that they are not competent, they wrote the following (I guess this was an automatically generated message because it got back in 10 seconds ) from [email protected]:
    "As the chipset supplier, Broadcom provides driver support to our customers - the manufacturers of wireless devices - that ultimately provide products to end customers, such as wireless LAN vendors, cable modem vendors, and notebook providers. It is up to these manufacturers to provide product-specific drivers and software support to their end customers. Please contact the manufacturer of your wireless device for their current drivers"
    Then I addressed Lenovo with the problem, their answer:
    "Dear ******,
    Thank you for contacting Lenovo, the makers of ThinkPad and ThinkCentre products. As I understand, you have purchased a Lenovo IdeaPad G550L and would like to use its WiFi adapter (BCM4310 according to Everest) with explicitly change MAC address.and you would like to know is there an official driver for Windows XP that allows you this basic feature like b43 in Linux. We apologize,Please do speak with our Idea pad technical Team at 877-453-6686 Option 1-2-1-2 for further assistance.
    If you have further questions or concerns, please feel free to contact us at 866-42-THINK (84465) option number 2. We will be happy to assist at that time.
    Once again, thank you for contacting Lenovo.
    Sincerely,
    Lenovo Websales/CustServe"
    So this means I should call them and spend extra money for phone bill of international calls because of their fault of providing a basic feature that is to be expected from every single wireless card in the market. Should I believe that a guide over the phone is more efficient than a step-by-step solution or a link to an alternative driver? I'm getting kind of disappointed. At least they have understood (or copy-pasted) my problem, dutch comfort though.
    Any ideas? Anyone experienced the same problem and solved it? Is there an official (or even unofficial) driver for this device for Windows XP that allows me this basic feature (like b43 in Linux)?
    Thanks in advance,
    str4ngS

    Yes, I have posted this thread to different forums after I realized that Lenovo "customer care" is not likely to help me out and even wirelessforums.org members couldn't come up with any ideas for days, that's why. I have already written that helper applications like SMAC (or etherchange or macshift) don't work, because they do the same thing in the system as I change it in the driver panel, so they use the same method which simply does not work.
    Locked? Definitely not. If yes, why can I change the MAC of my adapter under Ubuntu Linux using b43 open-source driver if it's really locked? Or you mean it's locked from software, because Lenovo or Broadcom didn't want their users to change their MACs or they just forgot to release a fully-functional driver? Well, then I would like to have a driver in which it's not locked, because this is a basic feature of my adapter of which the hardware is capable.
    I have already contacted Broadcom, see their (automatically-generated) answer in my initial post, but I will try to do that again with more foresight.

  • Unable to read MAC address of router at login

    I'm using the following bash function to get the MAC address of the current router when logging in. The script works when I run it after logging in but doesn't work from my login hook (running as root). The script fails even after sleeping for 30 seconds prior to running. I know the interface is up because my mail client is finished checking mail by the time the script pings the router runs the arp command. I could run it as a cron job, but I'd like to understand why it fails during login.
    <pre style="border: 1px solid #ddd; padding-left: .75ex; padding-top: .25em; padding-bottom: .25em; margin-top: .5em; margin-bottom: .5em; margin-left: 1ex; max-width: 80ex; overflow: auto; font-size: 10px; font-family: Monaco, 'Courier New', Courier, monospace; color: #444; background: #eee; line-height: normal">get_route_mac() {
    ip=$(netstat -nrfinet | awk '/^default/{print $2; exit}')
    [[ "$ip" = *.*.*.* ]] || return 1
    [ ${1:-0} -gt 0 ] && ping -nc$1 $ip 2>&1 >/dev/null
    arp -n $ip | sed -n 's/.* at \(.*:.*:.*:.*:.*:.*\) on .*/\1/p'
    </pre>
    The idea is to do certain things when joining different networks. Especially when connected to an unknown network (stolen laptop recovery). I would like to support 10.3.9, so I'm avoiding launchd for now.

    PWD=/
    SHLVL=1
    SECURITYSESSIONID=ceb19270
    _=/usr/bin/printenv
    uid=0(root) gid=0(wheel) groups=0(wheel)
    The script works much better when it can find the required programs. :0)
    which netstat awk ping arp sed
    /usr/sbin/netstat
    /usr/local/bin/awk
    /sbin/ping
    /usr/sbin/arp
    /usr/bin/sed
    <pre style="border: 1px solid #ddd; padding-left: .75ex; padding-top: .25em; padding-bottom: .25em; margin-top: .5em; margin-bottom: .5em; margin-left: 1ex; max-width: 80ex; overflow: auto; font-size: 10px; font-family: Monaco, 'Courier New', Courier, monospace; color: #444; background: #eee; line-height: normal">get_route_mac() {
    ip=$(/usr/sbin/netstat -nrfinet | /usr/local/bin/awk '/^default/{print $2; exit}')
    [[ "$ip" = *.*.*.* ]] || return 1
    [ ${1:-0} -gt 0 ] && /sbin/ping -nc$1 $ip 2>&1 >/dev/null
    /usr/sbin/arp -n $ip | /usr/bin/sed -n 's/.* at (.*:.*:.*:.*:.*:.*) on .*/ /p'
    }</pre>
    Thanks for your help, Bob!

  • MAC address and router access control

    My iPhone 3GS can only access the network (through my Netgear KWGR614 wireless router) when the router's MAC address access control is off. When I turn it on the phone is blocked. The MAC address I use is taken from the iPhone settings. It begins with 64. All other MAC addresses I have ever seen begins with 00. Is this MAC address correct? If it is right, could it be that the router can't handle this address?

    The first 3 bytes of the mac address identifies the manufacturer. For example, mine starts with 04:1e:64 which is Apple
    04-1E-64 (hex) Apple, Inc
    041E64 (base 16) Apple, Inc
    1 Infinite Loop
    Cupertino CA 95014
    UNITED STATES
    . if it starts with 64 then it belongs to
    64-4F-74 (hex) LENUS Co., Ltd.
    644F74 (base 16) LENUS Co., Ltd.
    18-5 Gwacheon-Dong
    Gwacheon Gyeonggi-Do 427-060
    KOREA, REPUBLIC OF
    check this list : http://standards.ieee.org/regauth/oui/index.shtml
    enter your first 3 numbers (first 3 pairs) from your wifi (settings/general/about) (don't use colons in the search)
    Not sure about the router as I never tried mac filtering. Each router will behave differently.
    Hope this helps.

  • MAC Addresses in routed datagrams

    Hi,
    I am due to teach some pupils the basics of MAC Addresses/IP Addresses and routing soon and I have a (hopefully) quick question which I am hoping someone here can help me with.
    When a frame is placed out onto a public network is has a destination MAC Address. Is this address the MAC address of the next hop or the address of the final destination. If it is the next hop then am I right in assuming that the once the frame reaches the next router, the frame is unpacked to obtain the IP address from the layer 3 headers, and a new layer 2 frame is assembled with the MAC address of the next router to which the frame is to be sent. 

    Hello robertfl00k
    When a frame is placed out onto a public network it will be having destination Mac Address of the next hop. When that frame will be received by the router, then it will remove the layer 2 information and check its routing table for the destination ip address. If destination will be available there in the routing table then it will attach new layer 2 information and forward that data to next hop.
    Regards,
    Mukesh Kumar
    Network Engineer
    Spooster IT Services

  • How can i sync mac address book w/ outlook for mac 2011

    Is it possible to have the address book in Outlook for Mac 2011 sync w/ the Mac address book?  I cleaned up my contacts in the Mac address book expecting the changes to show up in my outlook address book.  Made over 200 changes that did not show up on the Outlook address book.  Seems like there should be a way to make this work.  If I add contacts from within Outlook, I'd like them to show up on all my devices.  MacBook Pro, iPhone, and iPad.  Any help would be greatly appreciated.  I'm new to this platform as I was a PC guy for the last 30 years. 

    I've got Outlook up and running just fine.  Still have the problem with getting duplicate emails but I'm waiting on MS to get a fix for that in an update.  Apparently that has been an ongoing issue.  I've been in contact w/ a senior MS Outlook tech on that.  I guess I'll just have to make sure that all contact adds/edits are done in Outlook.  Then I can sync my phone or iPad and get the cloud to update the other Apple devices off that sync.  Either that or figure out how to export from the Mac address book to the Outlook address book once in a while. 

  • How can I find MAC address of AppleTV?

    Need to allow access by MAC address but can't find the info on my new AppleTV.

    Believe its under Settings > General > About. If not exactly there you should find it in that area.

  • Nexus 3064 switch: Can't get MAC addresses through SNMP

    Hello Everyone!
    I'm seeing an issue in our Nexus 3064 switch where we can't get the MAC address table using SNMP. At the same time, I can see MAC addresses of all the ports from the switch command line (show mac address-table). I've verified that SNMP is enabled and I can fetch other switch information (such as VLANs) using SNMP.
    I did an SNMP walk to get the mac (
    snmpwalk -v2c -c <communityString>@<VlanID> <ManagementIP> 1.3.6.1.2.1.17.4.3.1), and it didnt return anything.
    Could any of you please let me know what can be potentially wrong here? Really appreciate your help.
    Thanks for your time!

    Greetings Vipins,
    This could be caused by CSCto56055 "not getting any value for dot1dtpFdbTable objects", resolved in 5.0(3)U1(2) and later releases.
    Kind Regards,
    /Phil

  • Can't see MAC address on LAN

    Issuing the arp -a command in terminal (Mac OS) shows all MAC addresses connected to my LAN.  However the network extender MAC address doesn't show.  Any idea why not?

    it jsut started working...

Maybe you are looking for

  • Is there a way to create custom page numbering (ie 1, 2, 2, 3, 3, etc.)?

    I have a document that needs special treatment for its page numbering. This is a two page spread that I need to have the same page number on facing pages. The page numbering would look like 1, 2, 2, 3, 3, 4, 4 and so on. I have looked through the for

  • Can I set up wireless internet and a wireless printer at the same time?

    I have an AirPort Express configured already which allows wireless access to the internet (as it is connected to my broadband router) but can I also configure it to allow wireless printer sharing at the same time? I would appreciate an answer on this

  • Form Performance Degrades after Business Rules are added to Run on Save

    Has anyone ever seen an instance where adding business rules to a form (run on save only) makes the form open twice as slow? We have some large forms that were opening in about 20 seconds that suddenly started taking twice as long (40 seconds). When

  • N96 video ringtone problem

    I bougth the n95 yesterday and I already did the 11.0 update. There is a problem with the ringtones though. If I set a video ringtone in my general profile and someone from my contacts call me, it rings with the default ringtone and does not used the

  • Crystal Report as HTML

    Hi, I am very new to crystal reports. I created a report and was able to launch the same in browser. When I see the report in the browser, it has the toolbar on the top and gets displayed more or less like PDF. Is there any way, I could display my re