<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic DMZ issues in ASA 5505 Firewall in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419718#M270457</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I am not mistaken even though you have an Unlimited User licensed ASA5505 you still lack the additional Vlan support that the Security Plus License would provide.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Though with your current license you should be able to create 3 Vlan interfaces of which 2 would be normal Vlan interfaces and 1 a DMZ (resticted) Vlan interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you have for example &lt;STRONG&gt;"inside"&lt;/STRONG&gt; and &lt;STRONG&gt;"outside"&lt;/STRONG&gt; interface currently and want to create a &lt;STRONG&gt;"dmz"&lt;/STRONG&gt; interface then you would have to first create the 3rd Vlan interface and then choose towards which existing interface the connections should be disabled (this is because its a resticted Vlan interface)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Lets say you have Vlan2 for &lt;STRONG&gt;"outside"&lt;/STRONG&gt; and Vlan1 for &lt;STRONG&gt;"inside"&lt;/STRONG&gt; and create a new Vlan3 for &lt;STRONG&gt;"dmz"&lt;/STRONG&gt; you would have to do this&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;interface Vlan3&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; no forward interface Vlan1&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; nameif dmz&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; security-level 50&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; ip address &lt;IP&gt; &lt;NETWORK mask=""&gt;&lt;/NETWORK&gt;&lt;/IP&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can naturally confirm the Vlan support on the ASA currently with the command&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;show version&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 02 Feb 2014 13:43:02 GMT</pubDate>
    <dc:creator>Jouni Forss</dc:creator>
    <dc:date>2014-02-02T13:43:02Z</dc:date>
    <item>
      <title>DMZ issues in ASA 5505 Firewall</title>
      <link>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419717#M270455</link>
      <description>&lt;P&gt;hi , i have asa 5505 firewall with ASA5505-UL-BUN-K9 license i have problem with DMZ. I am not able to create dmz. please suggest me what i need to do in order to be able to configure dmz. should i need to upgrade the license. please suggest.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 03:39:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419717#M270455</guid>
      <dc:creator>Dawood Khan</dc:creator>
      <dc:date>2019-03-12T03:39:15Z</dc:date>
    </item>
    <item>
      <title>DMZ issues in ASA 5505 Firewall</title>
      <link>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419718#M270457</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I am not mistaken even though you have an Unlimited User licensed ASA5505 you still lack the additional Vlan support that the Security Plus License would provide.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Though with your current license you should be able to create 3 Vlan interfaces of which 2 would be normal Vlan interfaces and 1 a DMZ (resticted) Vlan interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you have for example &lt;STRONG&gt;"inside"&lt;/STRONG&gt; and &lt;STRONG&gt;"outside"&lt;/STRONG&gt; interface currently and want to create a &lt;STRONG&gt;"dmz"&lt;/STRONG&gt; interface then you would have to first create the 3rd Vlan interface and then choose towards which existing interface the connections should be disabled (this is because its a resticted Vlan interface)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Lets say you have Vlan2 for &lt;STRONG&gt;"outside"&lt;/STRONG&gt; and Vlan1 for &lt;STRONG&gt;"inside"&lt;/STRONG&gt; and create a new Vlan3 for &lt;STRONG&gt;"dmz"&lt;/STRONG&gt; you would have to do this&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;interface Vlan3&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; no forward interface Vlan1&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; nameif dmz&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; security-level 50&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; ip address &lt;IP&gt; &lt;NETWORK mask=""&gt;&lt;/NETWORK&gt;&lt;/IP&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can naturally confirm the Vlan support on the ASA currently with the command&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;show version&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 02 Feb 2014 13:43:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419718#M270457</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2014-02-02T13:43:02Z</dc:date>
    </item>
    <item>
      <title>DMZ issues in ASA 5505 Firewall</title>
      <link>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419719#M270459</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;First of all thanks for your response. yes you are right i have ASA5505-UL-BUN-K9 license. if i buy ASA5505-SEC-BUN-K9 License than how many vlan it will provide.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Feb 2014 05:59:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419719#M270459</guid>
      <dc:creator>Dawood Khan</dc:creator>
      <dc:date>2014-02-03T05:59:51Z</dc:date>
    </item>
    <item>
      <title>DMZ issues in ASA 5505 Firewall</title>
      <link>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419720#M270461</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Dawood,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you obtain the security Plus License you will be able to use up to 20 VLANs on your ASA Firewall having the DMZ Restricted advertisement fade away &lt;SPAN __jive_emoticon_name="grin" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/grin.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope this answers your question, any other bring it on bud &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Looking for some Networking Assistance?&amp;nbsp; &lt;BR /&gt;&lt;SPAN&gt;Contact me directly at &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:jcarvaja@laguiadelnetworking.com"&gt;jcarvaja@laguiadelnetworking.com&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt; &lt;BR /&gt;I will fix your problem ASAP. &lt;BR /&gt; &lt;BR /&gt;Cheers, &lt;BR /&gt; &lt;BR /&gt;Julio Carvajal Segura &lt;BR /&gt;&lt;A class="jive-link-external-small" href="http://laguiadelnetworking.com"&gt;http://laguiadelnetworking.com&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Feb 2014 06:17:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419720#M270461</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2014-02-03T06:17:09Z</dc:date>
    </item>
    <item>
      <title>DMZ issues in ASA 5505 Firewall</title>
      <link>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419721#M270462</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is the currently licensed firewall something that you have had for sometime or is it a new purchase?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just wondering as it would seem unreasonable to just have bought something and then having to get a new license. Just wondering if you can somehow avoid spending extra money if this is a new purchase that wasnt what you were actually looking for.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can check this link for the differnent options the ASA5505 has&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80402e36.html"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80402e36.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can also check this link for all the available licensed options on the ASA5505&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa91/license/license_management/license.html#wp2124788"&gt;http://www.cisco.com/en/US/docs/security/asa/asa91/license/license_management/license.html#wp2124788&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This link contains also information on the ASA models&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80285492.pdf"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80285492.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So essentially you would get 20 Vlan interfaces instead of 3 and also support for Trunking which would let you use a single physical link for several Vlans (if you wanted that is)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Feb 2014 07:16:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419721#M270462</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2014-02-03T07:16:41Z</dc:date>
    </item>
    <item>
      <title>DMZ issues in ASA 5505 Firewall</title>
      <link>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419722#M270463</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 04 Feb 2014 05:39:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419722#M270463</guid>
      <dc:creator>Dawood Khan</dc:creator>
      <dc:date>2014-02-04T05:39:59Z</dc:date>
    </item>
    <item>
      <title>DMZ issues in ASA 5505 Firewall</title>
      <link>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419723#M270464</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 04 Feb 2014 05:40:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419723#M270464</guid>
      <dc:creator>Dawood Khan</dc:creator>
      <dc:date>2014-02-04T05:40:11Z</dc:date>
    </item>
    <item>
      <title>DMZ issues in ASA 5505 Firewall</title>
      <link>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419724#M270465</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Dawood,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My pleasure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do u have any other question? Otherwise u can mark Jouni's and my answers as valid.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Looking for some Networking Assistance?&amp;nbsp; &lt;BR /&gt;&lt;SPAN&gt;Contact me directly at &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:jcarvaja@laguiadelnetworking.com"&gt;jcarvaja@laguiadelnetworking.com&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt; &lt;BR /&gt;I will fix your problem ASAP. &lt;BR /&gt; &lt;BR /&gt;Cheers, &lt;BR /&gt; &lt;BR /&gt;Julio Carvajal Segura &lt;BR /&gt;&lt;A class="jive-link-external-small" href="http://laguiadelnetworking.com"&gt;http://laguiadelnetworking.com&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 04 Feb 2014 05:59:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-issues-in-asa-5505-firewall/m-p/2419724#M270465</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2014-02-04T05:59:19Z</dc:date>
    </item>
  </channel>
</rss>

