04-07-2009 12:56 PM - edited 03-09-2019 10:12 PM
Is placing a guest network on the DMZ, with access via its own VLAN on the corp switch a viable option? The ASA would protect the guest network. Currently a SFTP server resides on the DMZ.
04-08-2009 12:59 AM
This is a normal practice - the only secure requirement is that no other layer 3 interface exists in the VLAN apart from the physical interface of the firewall.
HTH>
04-08-2009 06:43 AM
I did not quite understand your reply. The Cisco switches are on a single VLANxx. Is it safe to create a VLANzz with IP scheme of dmz. VLANzz would have two wireless access points for guests.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide