<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hello johnlloyd_13,There is a in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/mac-address-auto/m-p/2429165#M238417</link>
    <description>&lt;P&gt;Hello &lt;SPAN class="fullname" itemprop="author"&gt;&lt;A class="username" href="https://supportforums.cisco.com/users/johnlloyd13" title="View user profile."&gt;johnlloyd_13,&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;There is a very detailed explanation for the use on this command on the command reference for the ASA. This is an extract:&amp;nbsp;&lt;/P&gt;&lt;P class="pB1_Body1"&gt;To allow contexts to share interfaces, we suggest that you assign unique MAC addresses to each shared context interface. The MAC address is used to classify packets within a context. If you share an interface, but do not have unique MAC addresses for the interface in each context, then the destination IP address is used to classify packets. The destination address is matched with the context NAT configuration, and this method has some limitations compared to the MAC&amp;nbsp;address method. See the &lt;EM class="cEmphasis"&gt;Cisco ASA 5500 Series Configuration Guide using the CLI&lt;/EM&gt; for information about classifying packets.&lt;/P&gt;&lt;P&gt;&lt;A name="wp2043219" style="text-decoration: none;"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P class="pB1_Body1"&gt;In the rare circumstance that the generated MAC address conflicts with another private MAC address in your network, you can manually set the MAC address for the interface within the context. See the &lt;B class="cBold"&gt;mac-address&lt;/B&gt; command to manually set the MAC address.&lt;/P&gt;&lt;P class="pB1_Body1"&gt;In other words you will need to use this command unless you want to setup each mac-address manually. This is the complete document:&lt;A href="http://tools.cisco.com/squish/2D5ff" id="ext-gen223"&gt;http://tools.cisco.com/squish/2D5ff&lt;/A&gt;&lt;/P&gt;&lt;P class="pB1_Body1"&gt;Please let us know if you have any additional question and I hope you find this information helpful.&lt;/P&gt;&lt;P class="pB1_Body1"&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 19 May 2014 02:21:08 GMT</pubDate>
    <dc:creator>joseoroz</dc:creator>
    <dc:date>2014-05-19T02:21:08Z</dc:date>
    <item>
      <title>mac-address auto</title>
      <link>https://community.cisco.com/t5/network-security/mac-address-auto/m-p/2429164#M238416</link>
      <description>&lt;P&gt;hi all,&lt;/P&gt;&lt;P&gt;i'm going to configure an ASA for multiple security context and ran into this command.&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/command/reference/cmd_ref/m.html#wp2043127" target="_blank"&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/command/reference/cmd_ref/m.html#wp2043127&lt;/A&gt;&lt;/P&gt;&lt;P&gt;the design would be the 'outside' interface G0/0 will be shared by the security contexts but will assigned with different public IP addresses.&lt;/P&gt;&lt;P&gt;the 'inside' interface G0/0.x will be subinterfaces with different VLANs and private IP addresses.&lt;/P&gt;&lt;P&gt;is this command necessary and what are the pros and cons when enabled and if it's disabled?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:12:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mac-address-auto/m-p/2429164#M238416</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2019-03-12T04:12:41Z</dc:date>
    </item>
    <item>
      <title>Hello johnlloyd_13,There is a</title>
      <link>https://community.cisco.com/t5/network-security/mac-address-auto/m-p/2429165#M238417</link>
      <description>&lt;P&gt;Hello &lt;SPAN class="fullname" itemprop="author"&gt;&lt;A class="username" href="https://supportforums.cisco.com/users/johnlloyd13" title="View user profile."&gt;johnlloyd_13,&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;There is a very detailed explanation for the use on this command on the command reference for the ASA. This is an extract:&amp;nbsp;&lt;/P&gt;&lt;P class="pB1_Body1"&gt;To allow contexts to share interfaces, we suggest that you assign unique MAC addresses to each shared context interface. The MAC address is used to classify packets within a context. If you share an interface, but do not have unique MAC addresses for the interface in each context, then the destination IP address is used to classify packets. The destination address is matched with the context NAT configuration, and this method has some limitations compared to the MAC&amp;nbsp;address method. See the &lt;EM class="cEmphasis"&gt;Cisco ASA 5500 Series Configuration Guide using the CLI&lt;/EM&gt; for information about classifying packets.&lt;/P&gt;&lt;P&gt;&lt;A name="wp2043219" style="text-decoration: none;"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P class="pB1_Body1"&gt;In the rare circumstance that the generated MAC address conflicts with another private MAC address in your network, you can manually set the MAC address for the interface within the context. See the &lt;B class="cBold"&gt;mac-address&lt;/B&gt; command to manually set the MAC address.&lt;/P&gt;&lt;P class="pB1_Body1"&gt;In other words you will need to use this command unless you want to setup each mac-address manually. This is the complete document:&lt;A href="http://tools.cisco.com/squish/2D5ff" id="ext-gen223"&gt;http://tools.cisco.com/squish/2D5ff&lt;/A&gt;&lt;/P&gt;&lt;P class="pB1_Body1"&gt;Please let us know if you have any additional question and I hope you find this information helpful.&lt;/P&gt;&lt;P class="pB1_Body1"&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 19 May 2014 02:21:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mac-address-auto/m-p/2429165#M238417</guid>
      <dc:creator>joseoroz</dc:creator>
      <dc:date>2014-05-19T02:21:08Z</dc:date>
    </item>
    <item>
      <title>hi,thanks for clarifying!we</title>
      <link>https://community.cisco.com/t5/network-security/mac-address-auto/m-p/2429166#M238418</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;thanks for clarifying!&lt;/P&gt;&lt;P&gt;we have another context based ASA that don't have this command but works fine.&lt;/P&gt;&lt;P&gt;might as well enable it.&lt;/P&gt;</description>
      <pubDate>Mon, 19 May 2014 03:05:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mac-address-auto/m-p/2429166#M238418</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2014-05-19T03:05:41Z</dc:date>
    </item>
  </channel>
</rss>

