Guys we have a scenario in which we have. Ce router connected to the wan (MPLA cloud) on the LAN side it's connected to Asa the connectivity is router connected to the switch and Asa is connected to the switch as ......we have IPSec VPN to the data centre the issue is that we now want to manage the ce router and firewall from the data centre .....what would be the best way we don't have any spare Ethernet port in router nor firewall ......I was wondering if I make a logical au interface on the firewall and make the connection trunk on switch side and I also make us interface on router and make the connection trunk from the switch to the router will it work...?.
I can then use the sun interface Ip of both fw and router for management ?.. Just want to know well this scenario work......
For the router you could configure a loopback interface with a unique IP and advertise that into the BGP process of the MPLS (would be best to have a MGMT VRF for this but not a requirement) and then use that as the management IP. To make it even more secure you could add and ACL to the VTY line only allowing certain IPs the ability to access the device, and limit the management protocol to SSH as telnet is not secure.
For the ASA, as jumora has mentioned, you can use the management-access command where interface is will be the interface you will initiate a management session to.
Please remember to rate and select a correct answer
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...