Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Firewall Solution for my network

My company have co-allocation service form a DC, we have multiple network over their, as mentioned on topology (Please check attached pic) they have an L3 switch which I can neither access and nor can ask them to do any changes in configuration. They provide me a single cable for multiple network I have around 15 network running on that same cable, all of them are in default VLAN.
All most all of my servers have multiple network IP on same interface, e.g 192.168.1.5/24, 172.16.1.5/24, 172.30.6.5/24. (I have public network not private it is just an example) my swithces have default vlan running on it.

Now I want to add a single firewall for my whole network topology instead of having multiple firewalls. Currently I have multiple firewalls in my network for few servers which have only 1 network on their interface. Firewall has to be in transparent mode as I can't give private IP on my servers, clients need Public IP address.
As I have multiple network on default vlan I am not getting any Idea to configure my ASA (5585-X). Do I have to configure all network on the firewall? if yes then as all are in default VLAN I don't think it will work.

Can you give me any Idea what should I do for this, if it is required I can do some changes in my topology but I cant change IP address already assigned on NIC of servers.

  • Firewalling
Everyone's tags (2)
2 REPLIES
New Member

This is a schema of your

This is a schema of your configuration :

interface bvi 1
 ip address 192.168.1.1 255.255.255.0 standby 192.168.1.2
interface vlan 2
 bridge-group 1
 nameif DMZ1
 security-level 50
interface vlan 3
 bridge-group 1
 nameif DMZ2
 security-level 50
interface vlan 4
 bridge-group 1
 nameif DMZ3
 security-level 50
 

New Member

Hi walter,This will work for

Hi walter,

This will work for my 5505 in this topology, but I want to use 5585-x and connect uplink cable on it. That cable is used for multiple network all are in vlan 1.

 

What should be configuration for 5585-x

47
Views
0
Helpful
2
Replies
This widget could not be displayed.