i have a demo SF DC and ASA (sfr) and would like to span live traffic to the DC so i can present it to the upper management and hopefully have it in budget for next year.
My DC is configured, i have ASA added, have licences but not sure how to configure DC/SF in monitor mode. The purpose is to span all production traffic and not to block anything. Would you guys be able to provide some guidances/docs? Thanks
Need to have ASA in transparent mode, one interface (g0/0) connected to spanned port; managemetn interface connected to DC, add sfr sensor to DC, setup access policy to trust all traffic and assign policy to ASA.