Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

ASA-SM: same mgmt VLAN in all context

                   Hi

I have ASA-SM failover pair in two Catalyst 6500 switches.

I send from switch to ASA-SM management VLAN 1234 to admin context for management purposes.

I have another 3 contexts on ASA-SM.

Can I have same managemenet VLAN1234 on each ASA-SM context? Can it work?

I need it for sending syslog messages form contexts to syslog server via management interface.

Peter

Everyone's tags (5)
1 REPLY

ASA-SM: same mgmt VLAN in all context

Hi Bro

Just assign VLAN 1234 to the admin context. As for the other contexts, ensure those vlans assigned to those context are routable to VLAN 1234, and are you're able to poll SNMP, SYSLOG etc. messages.

Yes, you can assign VLAN 1234 to multiple context, but this is not practical. This is because each contect will require 2 IP Address for VLAN 1234, since it's running in failover mode. If you were to run 250 contexts (maximum), this approach will not work. You'll run out of VLAN 1234 IP Address in no time.

This is surely not the best design. You could refer to http://www.ciscopress.com/articles/article.asp?p=426641 for more details on this.

P/S: If you think this comment is useful, please do rate them nicely :-)

Warm regards, Ramraj Sivagnanam Sivajanam Technical Specialist/Service Delivery Manager – Managed Service Department
553
Views
0
Helpful
1
Replies
CreatePlease to create content