ASA context's sharing same IP address space on physical interface

Unanswered Question
Aug 7th, 2009

I'm pretty sure this cannot be done, but need to confirm.

I configured an ASA with 2 contexts, the customer expected that I could share the same IP address space outside for both contexts using the same physical interface. Wjen I configure the outside address on context 2 the ASA complains that the same address is used on another interface, it ism in context 1. Is there a way round this? Documents on CCO show its possible by using vlans, setting up the physical interface as a shared, but that is not what my customer wants.

I've said I'm sure this cannot be done, but want to sanity check my statement.

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
guibarati Fri, 08/07/2009 - 11:37

I'm sorry to say you are wrong.

It's possible to configure two addresses one for each context in the same physical interface, with the 2 addresses being in the same range or network (can not be exactly the same IP)

The thing here is that you must manually configure the mac addresses of the interfaces (inside each context) in order fot it to work.

Please rate if it help you.


This Discussion