cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
692
Views
0
Helpful
1
Replies

ASA solution

londint
Level 1
Level 1

Can we do virtual firewalling on any of the ASA solutions? Which ones and what are the advantages/disadvantages?

On the FWSM, I know we can do virtual firewall. Can we do the same on ASA?

Thanks

1 Reply 1

a.kiprawih
Level 7
Level 7

Yes, ASA 7.0 or higher has similar virtual firewall concept, just like in FWSM.

For ASA, it is referred as security context.

In ASA, you can have multiple virtual devices (security contexts). Each of them operates as independent device, with dedicated security policy, interfaces, and administrators. Multiple contexts are similar to having multiple standalone firewall devices. Many features are supported in multiple context mode, including routing tables, firewall features, IPS, and management. Some features are not supported, including VPN and dynamic routing protocols.

Like FWSM, you can specify numbers of security context as required. This feature only available for ASA 5520 & ASA5540:

- ASA5520 : 2 default security contexts, add-on license upgrade to 5 or 10 security context.

- ASA5540 : 2 default security contexts, add-on license upgrade to 5, 10, 20 & 50 security contexts add-on license.

Refer to the following URLs for more details:

http://www.cisco.com/en/US/products/ps6120/products_configuration_guide_chapter09186a0080636f9b.html#wp1035807

http://www.cisco.com/en/US/products/ps6120/products_configuration_guide_chapter09186a00806b1c1c.html

HTH

AK

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card