<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic No need to deploy an in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5516-multiple-outside-interfaces/m-p/2984306#M144487</link>
    <description>&lt;P&gt;No need to deploy an additional firewall.&lt;/P&gt;
&lt;P&gt;Just add another (logical) interface on your ASA and add a route to your 172.16.x.x/24 network with juniper ip address as next-hop.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Let me know if you have any questions&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 01 Dec 2016 19:15:28 GMT</pubDate>
    <dc:creator>Oliver Kaiser</dc:creator>
    <dc:date>2016-12-01T19:15:28Z</dc:date>
    <item>
      <title>ASA 5516 - Multiple Outside Interfaces</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-multiple-outside-interfaces/m-p/2984305#M144486</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I have an ASA 5516&amp;nbsp;cluster running a managed pair of resilient internet lines.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Main Cluster&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;1 -ISP - 2800 - ASA1 (active) - LAN&lt;/P&gt;
&lt;P&gt;2 -ISP - 2800 - ASA2 (passive) - LAN&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have also have an ASA 5505 which is connected to a separate internet line.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;APN Line&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;ISP - Juniper- ASA 5505 - LAN&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Its purpose is to run a l2l VPN to our Mobile provider that forms part of a private APN. Mobile&amp;nbsp;Devices are assigned a&amp;nbsp;172.16.x.x/24 address and connect in to access internal web services. SharePoint etc.&lt;/P&gt;
&lt;P&gt;Mobile device&amp;nbsp;browsers&amp;nbsp;are also configured to use our Webfilter, an internal server &amp;nbsp;which routes out to the internet via the main cluster.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I want to replace the 5505 and was considering buying a 5516. My question is&amp;nbsp;could I connect this line to the existing 5516 cluster instead and terminate there? Effectively saving myself buying a 5516.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;thanks&lt;/P&gt;
&lt;P&gt;John&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:36:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-multiple-outside-interfaces/m-p/2984305#M144486</guid>
      <dc:creator>jmckechnie</dc:creator>
      <dc:date>2019-03-12T08:36:35Z</dc:date>
    </item>
    <item>
      <title>No need to deploy an</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-multiple-outside-interfaces/m-p/2984306#M144487</link>
      <description>&lt;P&gt;No need to deploy an additional firewall.&lt;/P&gt;
&lt;P&gt;Just add another (logical) interface on your ASA and add a route to your 172.16.x.x/24 network with juniper ip address as next-hop.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Let me know if you have any questions&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 01 Dec 2016 19:15:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-multiple-outside-interfaces/m-p/2984306#M144487</guid>
      <dc:creator>Oliver Kaiser</dc:creator>
      <dc:date>2016-12-01T19:15:28Z</dc:date>
    </item>
    <item>
      <title>Hello John-</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-multiple-outside-interfaces/m-p/2984307#M144488</link>
      <description>&lt;P&gt;Hello John-&lt;/P&gt;
&lt;P&gt;If you are doing peering with the ISPs and are receiving default routes from both of them, then you should consider Interface Traffic Zones. Take a look at the link below that will take you to another thread that discusses this feature:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportforums.cisco.com/discussion/12401251/asa-93-traffic-zones"&gt;https://supportforums.cisco.com/discussion/12401251/asa-93-traffic-zones&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;I hope this helps!&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Dec 2016 04:30:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-multiple-outside-interfaces/m-p/2984307#M144488</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2016-12-02T04:30:51Z</dc:date>
    </item>
  </channel>
</rss>

