ASA 5520 v 8.0 Multiple inside interfaces

Unanswered Question
Oct 3rd, 2007
User Badges:

I was wondering if it is possible to have multiple inside(100) interfaces.

I have say two customers that need to be seperated.I have created two subinterfaces(gi0/1.1 and gi 0/1.2)

IP addresses are & are both assigned security-level 100.

These interfaces also act as the gateways for the subnets.

Only one outside interface configured.

Can this work?

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (2 ratings)
ajagadee Thu, 10/04/2007 - 05:32
User Badges:
  • Cisco Employee,


Yes, this should work. Please refer the below URL that discusses a similar scenario.

If you look through the configuration, E1.1(VLAN2) and E1.2(VLAN3) are sub interfaces on the inside with same security level.

interface Ethernet1.1

vlan 2

nameif vlan2

security-level 100

ip address


interface Ethernet1.2

vlan 3

nameif vlan3

security-level 100

ip address

I hope it helps.



** Please rate all helpful posts **

PAUL GILBERT ARIAS Thu, 10/04/2007 - 16:27
User Badges:
  • Silver, 250 points or more

You can have two interfaces with the same security level but they might cause problems when passing traffic between them. If you need to pass traffic between the two internal subnets you will need to add the command:

same-security-traffic permit inter-interface

Here is a link that you can use as a reference:


This Discussion