<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic When you say &amp;quot;redirect&amp;quot;, what in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753149#M177799</link>
    <description>&lt;P&gt;When you say "redirect", what do you mean? Do you want to use the ASA as your client gateway? What role do you want the ASAs to perform? Do you want specific access policies for each VLAN? Please explain?&lt;/P&gt;</description>
    <pubDate>Wed, 14 Oct 2015 04:27:35 GMT</pubDate>
    <dc:creator>Andre Neethling</dc:creator>
    <dc:date>2015-10-14T04:27:35Z</dc:date>
    <item>
      <title>ASA Transparent mode traffic redirection</title>
      <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753144#M177782</link>
      <description>&lt;P&gt;Hi everyone,&lt;/P&gt;&lt;P&gt;I have two firewall ASA 5585X deployed in transparent mode and two catalyst 6500 VSS (core switches). I want to redirect traffic from core switches to&amp;nbsp;&amp;nbsp;ASA. How can i do ? I have many VLANs on core switches. Thank you./.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:44:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753144#M177782</guid>
      <dc:creator>tran.van.tien</dc:creator>
      <dc:date>2019-03-12T06:44:17Z</dc:date>
    </item>
    <item>
      <title>a có biết NAT DNS trên ASA ko</title>
      <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753145#M177785</link>
      <description>&lt;P&gt;a có biết NAT DNS trên ASA&amp;nbsp;ko ạ???&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Oct 2015 08:23:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753145#M177785</guid>
      <dc:creator>pokemon284</dc:creator>
      <dc:date>2015-10-13T08:23:20Z</dc:date>
    </item>
    <item>
      <title>Hi Tran,In transparent mode</title>
      <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753146#M177788</link>
      <description>&lt;P&gt;Hi Tran,&lt;/P&gt;&lt;P&gt;In transparent mode of Firewall, you needs to create bridge groups to the vlans at both (in/out) side of firewall.&lt;/P&gt;&lt;P&gt;Example: Configuration on Inside/outside interfaces:&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/6&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; vlan 20&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nameif inside&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; bridge-group 1&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; security-level 100&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/7&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; vlan&amp;nbsp;30&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nameif&amp;nbsp;outside&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; bridge-group 1&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; security-level 0&lt;/P&gt;&lt;P&gt;Now please configure "BVI" interface with one IP from the same IP Subnet for which you want to pass traffic through firewall:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;interface BVI1&lt;/P&gt;&lt;P&gt;ip address 192.168.10.9&amp;nbsp;255.255.255.0 standby 192.168.10.10&amp;nbsp; (any free IP can be assigned from subnet)&lt;/P&gt;&lt;P&gt;Now, please allow interested traffic on ouside Interface via access-list. This will&amp;nbsp;redirect traffic through transparent firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Oct 2015 18:50:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753146#M177788</guid>
      <dc:creator>Rajneesh Dhiman</dc:creator>
      <dc:date>2015-10-13T18:50:05Z</dc:date>
    </item>
    <item>
      <title>Thank you for your answer,Let</title>
      <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753147#M177791</link>
      <description>&lt;P&gt;Thank you for your answer,&lt;/P&gt;&lt;P&gt;Let i show you a picture that describes my problem. I have core switches with many VLANs (10,20,30 for example) and i have just purchased 2 ASA 5585X witch 2 port 10Gb. I will connect it to core switches by using trunk links. I want to know how to redirect traffic to ASA with 2 ports and many VLANS. With the solution you suggest&amp;nbsp;i must have many&amp;nbsp;ports &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Oct 2015 19:33:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753147#M177791</guid>
      <dc:creator>tran.van.tien</dc:creator>
      <dc:date>2015-10-13T19:33:42Z</dc:date>
    </item>
    <item>
      <title>Hi Tran,You needs to create</title>
      <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753148#M177793</link>
      <description>&lt;P&gt;Hi Tran,&lt;/P&gt;&lt;P&gt;You needs to create&amp;nbsp;multiple virtual interfaces for inside/outisde&amp;nbsp;vlans.&lt;/P&gt;&lt;P&gt;Dont make both port as&amp;nbsp;single trunk.&amp;nbsp;You&amp;nbsp;should&amp;nbsp;use dedicate ports for incoming and outgoing traffic. below is example how you can permit multiple vlans&amp;nbsp;using 2 ports. Attaching design for your reference:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Config Example:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Inside Interfaces for all required Vlans&lt;/STRONG&gt; (10,20,30...)&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Note: &lt;/STRONG&gt;These Vlans(10,20,30...) should be configure as L2 inside vlans for host connectivity.&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/0.10&lt;BR /&gt;&amp;nbsp;vlan 10&lt;BR /&gt;&amp;nbsp;nameif inside1&lt;BR /&gt;&amp;nbsp;bridge-group 1&lt;BR /&gt;&amp;nbsp;security-level xx&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/0.20&lt;BR /&gt;&amp;nbsp;vlan 20&lt;BR /&gt;&amp;nbsp;nameif inside2&lt;BR /&gt;&amp;nbsp;bridge-group 2&lt;BR /&gt;&amp;nbsp;security-level xx&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/0.30&lt;BR /&gt;&amp;nbsp;vlan 30&lt;BR /&gt;&amp;nbsp;nameif inside3&lt;BR /&gt;&amp;nbsp;bridge-group 3&lt;BR /&gt;&amp;nbsp;security-level xx&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Outside&amp;nbsp;Interfaces for all required Vlans&lt;/STRONG&gt; (100,200,300...)&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;note:&lt;/STRONG&gt;These&lt;STRONG&gt; outside &lt;/STRONG&gt;Vlans&lt;STRONG&gt; &lt;/STRONG&gt;(100,200,300...) will be configured with L3 SVI on Core Switch&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;interface TenGigabitEthernet0/1.100&lt;BR /&gt;&amp;nbsp;vlan 100&lt;BR /&gt;&amp;nbsp;nameif outside1&lt;BR /&gt;&amp;nbsp;bridge-group 1&lt;BR /&gt;&amp;nbsp;security-level xx&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/1.200&lt;BR /&gt;&amp;nbsp;vlan 200&lt;BR /&gt;&amp;nbsp;nameif outside2&lt;BR /&gt;&amp;nbsp;bridge-group 2&lt;BR /&gt;&amp;nbsp;security-level xx&lt;/P&gt;&lt;P&gt;interface TenGigabitEthernet0/1.300&lt;BR /&gt;&amp;nbsp;vlan 300&lt;BR /&gt;&amp;nbsp;nameif outside3&lt;BR /&gt;&amp;nbsp;bridge-group 3&lt;BR /&gt;&amp;nbsp;security-level xx&lt;/P&gt;&lt;P&gt;BVI Interface config for all the allowed Vlans (100,200,300)&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;interface BVI1&lt;BR /&gt;&amp;nbsp;ip address 192.168.10.9 255.255.255.0 standby 192.168.10.10&lt;/P&gt;&lt;P&gt;interface BVI2&lt;BR /&gt;&amp;nbsp;ip address 192.168.20.9 255.255.255.0 standby 192.168.20.10&lt;/P&gt;&lt;P&gt;interface BVI3&lt;BR /&gt;&amp;nbsp;ip address 192.168.30.9 255.255.255.0 standby 192.168.30.10&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Rajneesh&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2015 04:12:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753148#M177793</guid>
      <dc:creator>Rajneesh Dhiman</dc:creator>
      <dc:date>2015-10-14T04:12:46Z</dc:date>
    </item>
    <item>
      <title>When you say "redirect", what</title>
      <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753149#M177799</link>
      <description>&lt;P&gt;When you say "redirect", what do you mean? Do you want to use the ASA as your client gateway? What role do you want the ASAs to perform? Do you want specific access policies for each VLAN? Please explain?&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2015 04:27:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753149#M177799</guid>
      <dc:creator>Andre Neethling</dc:creator>
      <dc:date>2015-10-14T04:27:35Z</dc:date>
    </item>
    <item>
      <title>Thank you Rajneesh!</title>
      <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753150#M177800</link>
      <description>&lt;P&gt;Thank you Rajneesh!&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2015 14:45:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753150#M177800</guid>
      <dc:creator>tran.van.tien</dc:creator>
      <dc:date>2015-10-14T14:45:00Z</dc:date>
    </item>
    <item>
      <title>Hi Tran Van,I have a three</title>
      <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753151#M177801</link>
      <description>&lt;P&gt;Hi Tran Van,&lt;/P&gt;&lt;P&gt;I have the same configurations but I can't &amp;nbsp;to do PING between &amp;nbsp;different Vlans &amp;nbsp;only can to do PING between the same network or the same vlan.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Mon, 19 Oct 2015 19:06:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753151#M177801</guid>
      <dc:creator>JRGC</dc:creator>
      <dc:date>2015-10-19T19:06:13Z</dc:date>
    </item>
    <item>
      <title>Hi jrgonzalezz,Please check</title>
      <link>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753152#M177802</link>
      <description>&lt;P&gt;Hi jrgonzalezz,&lt;/P&gt;&lt;P&gt;Please check your core switches&amp;nbsp;because it performs routing &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2015 08:09:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-transparent-mode-traffic-redirection/m-p/2753152#M177802</guid>
      <dc:creator>tran.van.tien</dc:creator>
      <dc:date>2015-10-20T08:09:07Z</dc:date>
    </item>
  </channel>
</rss>

