<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Is virtual IP possible ? in ASA  in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/is-virtual-ip-possible-in-asa/m-p/1346258#M772620</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You are right. Features like HSRP, VRRP, GLBP are not supported on the ASA. If you have 2 ASAs in failover they share the same ip address, but only the active is taking passing the traffic. The do no pass traffic at the same time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now if you go in a more complicated scenario with an active/active context you can have 2 units passing traffic at the same time. But still these are different virtual firewalls that have different policies.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To summarize, HA pairs as know from IOS is not supported on ASAs in the same way.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 16 Oct 2009 11:17:12 GMT</pubDate>
    <dc:creator>Panos Kampanakis</dc:creator>
    <dc:date>2009-10-16T11:17:12Z</dc:date>
    <item>
      <title>Is virtual IP possible ? in ASA</title>
      <link>https://community.cisco.com/t5/network-security/is-virtual-ip-possible-in-asa/m-p/1346257#M772609</link>
      <description>&lt;P&gt;&lt;/P&gt;&lt;P&gt; not the loopback if your thinking of that !!&lt;/P&gt;&lt;P&gt;can we configure 2 asa's to listen to same logical IP address ie.. from the below diagram router would route to the ASA on 1 logical Ip&lt;/P&gt;&lt;P&gt;two interface of asa would have the physical Ip !&lt;/P&gt;&lt;P&gt;Looks like Harp and Vrrp not supported in asa If i am not wrong any suggestions ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA -----ASA&lt;/P&gt;&lt;P&gt; |        |&lt;/P&gt;&lt;P&gt;---------------Switch &lt;/P&gt;&lt;P&gt; |        |&lt;/P&gt;&lt;P&gt;Router   router &lt;/P&gt;&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 16:26:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-virtual-ip-possible-in-asa/m-p/1346257#M772609</guid>
      <dc:creator>balaji090</dc:creator>
      <dc:date>2019-03-11T16:26:43Z</dc:date>
    </item>
    <item>
      <title>Re: Is virtual IP possible ? in ASA</title>
      <link>https://community.cisco.com/t5/network-security/is-virtual-ip-possible-in-asa/m-p/1346258#M772620</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You are right. Features like HSRP, VRRP, GLBP are not supported on the ASA. If you have 2 ASAs in failover they share the same ip address, but only the active is taking passing the traffic. The do no pass traffic at the same time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now if you go in a more complicated scenario with an active/active context you can have 2 units passing traffic at the same time. But still these are different virtual firewalls that have different policies.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To summarize, HA pairs as know from IOS is not supported on ASAs in the same way.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Oct 2009 11:17:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-virtual-ip-possible-in-asa/m-p/1346258#M772620</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2009-10-16T11:17:12Z</dc:date>
    </item>
    <item>
      <title>Re: Is virtual IP possible ? in ASA</title>
      <link>https://community.cisco.com/t5/network-security/is-virtual-ip-possible-in-asa/m-p/1346259#M772642</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;In addition to PK comments, using your same network diagram if you have your two routers either behind or in front of ASA speaking HSRP you can have your ASA use that virtual IP.. say your internet edge routers  Active/standby its HSRP IP can be your ASA default route.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Oct 2009 21:41:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-virtual-ip-possible-in-asa/m-p/1346259#M772642</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2009-10-16T21:41:11Z</dc:date>
    </item>
  </channel>
</rss>

