ASA5505 Managment on Outside Interface

Answered Question
Oct 16th, 2009
User Badges:

Is it possible to manage the ASA5505 via the outside interface. We are setting up a VPN Tunnel between to ASA5505s and the INSIDE interface on the remote ASA will be connecting to another network which we have not control of.


Thanks Mucho!!!

Correct Answer by Collin Clark about 7 years 8 months ago

From the outside you can use SSH, VPN, or ASDM. Here's how to configure SSH.


PIX(config)#hostname PIXOne

PIXOne(config)#domain-name mydomain.com

PIXOne(config)#crypto key generate rsa

PIXOne(config)#ssh time-out 60

PIXOne(config)#ssh [your public IP] 255.255.255.255 outside


Hope that helps.

Correct Answer by JORGE RODRIGUEZ about 7 years 8 months ago

If you are trying to manage firewall through ipsec tunnel you shoudl still have control of your inside interface and manage it through that interface..


management-access inside


and allow the host that needs to manage the firewall for telnet and http etc..


if the host is not part of that ipsec tunnel but needs to manage the firewall, then you can manage it through oustide interface by simply allowing that host in your http and telnet statements.


i.e

http outside

etc..


Regards

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (2 ratings)
Loading.
Correct Answer
JORGE RODRIGUEZ Fri, 10/16/2009 - 10:58
User Badges:
  • Green, 3000 points or more

If you are trying to manage firewall through ipsec tunnel you shoudl still have control of your inside interface and manage it through that interface..


management-access inside


and allow the host that needs to manage the firewall for telnet and http etc..


if the host is not part of that ipsec tunnel but needs to manage the firewall, then you can manage it through oustide interface by simply allowing that host in your http and telnet statements.


i.e

http outside

etc..


Regards

sjoyce Fri, 10/16/2009 - 12:22
User Badges:

Jorge, thanks for your reply. Sometimes the easy fixes appear as real problems.


Thanks Mucho!!!

Correct Answer
Collin Clark Fri, 10/16/2009 - 11:00
User Badges:
  • Purple, 4500 points or more

From the outside you can use SSH, VPN, or ASDM. Here's how to configure SSH.


PIX(config)#hostname PIXOne

PIXOne(config)#domain-name mydomain.com

PIXOne(config)#crypto key generate rsa

PIXOne(config)#ssh time-out 60

PIXOne(config)#ssh [your public IP] 255.255.255.255 outside


Hope that helps.

sjoyce Fri, 10/16/2009 - 12:28
User Badges:

Collin, thanks for your reply. Sometimes the blinding obvious escapes one!


Thanks Mucho!!!


Actions

This Discussion