12-06-2006 12:34 PM - edited 03-11-2019 02:05 AM
Hi,
I am having ASA 5510 (2) units with Security Plus license.Right now both the boxes are configured as Active/standby failover with stateful(LAN-Based).I want to use this 2 boxes as standalone for different locations as temporary sloution.Please let me know it is feasible.
Regards,
Magesh
12-06-2006 02:51 PM
Unlike PIX where you cannot run/use Standby/Failover unit as standalone unit, ASA allows you to use them as Active/Standby, Active/Active or operates as individual unit.
You can always deploy the boxes to any separate location to have more control (firewalling) over your network. In this case, you can let the primary/active unit running, remove the failover config and take the standby unit away.
The only reason you put/cluster them together is to achieve high availability.
HTH
AK
12-06-2006 03:08 PM
Hi Ak,
Thanks a lot for your clarification.
One more calrification is there any limitaion for the number of ACLS that we can use on cisco ASA box.
Thanks & Regards,
Magesh
12-08-2006 07:02 AM
hi there is no pre-defined limit of number of acls on asa or pix. but yes sooner after a 1000 acls u will seea performance delay. best way to use them is to create object-groups and use them. it will really reduce the number of acls required for it.
regards
sebastan
12-10-2006 12:31 AM
Hi Sebastan,
Thanks for your suggestion.
Thanks & Regards
Magesh
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide