<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Reconfigure ASA interface to make it trunk, Impact on SFR module in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/reconfigure-asa-interface-to-make-it-trunk-impact-on-sfr-module/m-p/3326327#M926025</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have an ASA Firewall with SFR capabilities that has 2 routed interfaces: Inside and Outside. I need to reconfigure the physical inside interface, make it trunk and create 2 subinterfaces: one will be the previously inside interface and add a new "inside2".&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If I do that, will that ASA topology change be reflected on the SFR module instantly (under Device Management-&amp;gt;Device-&amp;gt;Interface?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The SFR module is managed by an FMC appliance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The Firewall is in production currently and the change will be done during a maintenance window as the physical interface reconfiguration will cause an outage.&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 15:17:57 GMT</pubDate>
    <dc:creator>arisgiannakopoulos</dc:creator>
    <dc:date>2020-02-21T15:17:57Z</dc:date>
    <item>
      <title>Reconfigure ASA interface to make it trunk, Impact on SFR module</title>
      <link>https://community.cisco.com/t5/network-security/reconfigure-asa-interface-to-make-it-trunk-impact-on-sfr-module/m-p/3326327#M926025</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have an ASA Firewall with SFR capabilities that has 2 routed interfaces: Inside and Outside. I need to reconfigure the physical inside interface, make it trunk and create 2 subinterfaces: one will be the previously inside interface and add a new "inside2".&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If I do that, will that ASA topology change be reflected on the SFR module instantly (under Device Management-&amp;gt;Device-&amp;gt;Interface?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The SFR module is managed by an FMC appliance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The Firewall is in production currently and the change will be done during a maintenance window as the physical interface reconfiguration will cause an outage.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:17:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/reconfigure-asa-interface-to-make-it-trunk-impact-on-sfr-module/m-p/3326327#M926025</guid>
      <dc:creator>arisgiannakopoulos</dc:creator>
      <dc:date>2020-02-21T15:17:57Z</dc:date>
    </item>
    <item>
      <title>Re: Reconfigure ASA interface to make it trunk, Impact on SFR module</title>
      <link>https://community.cisco.com/t5/network-security/reconfigure-asa-interface-to-make-it-trunk-impact-on-sfr-module/m-p/3326359#M926026</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;How are you forwarding the traffic to the SFR module? Reconfigure your interface and re-apply the service-policy for the SFR traffic to the required interfaces.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;John&lt;/P&gt;</description>
      <pubDate>Wed, 07 Feb 2018 01:49:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/reconfigure-asa-interface-to-make-it-trunk-impact-on-sfr-module/m-p/3326359#M926026</guid>
      <dc:creator>johnd2310</dc:creator>
      <dc:date>2018-02-07T01:49:54Z</dc:date>
    </item>
    <item>
      <title>Re: Reconfigure ASA interface to make it trunk, Impact on SFR module</title>
      <link>https://community.cisco.com/t5/network-security/reconfigure-asa-interface-to-make-it-trunk-impact-on-sfr-module/m-p/3326362#M926027</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks for the reply.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am using an ACL to redirect traffic to the module.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So after I make all the changes on the ASA interface, I would have to push policy. By doing this the new ASA interface will show up under the Device configuration (in FMC)? If yes, I guess then I will have to make the appropriate Security Zone/ASA interface associations and push policy again?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;PS: since the Layer 3 configuration from the inside interface will be moved from the physical interface to a sub-interface, will the Security Zone/ASA interface association be updated once I do the first policy push?&lt;/P&gt;</description>
      <pubDate>Wed, 07 Feb 2018 01:55:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/reconfigure-asa-interface-to-make-it-trunk-impact-on-sfr-module/m-p/3326362#M926027</guid>
      <dc:creator>arisgiannakopoulos</dc:creator>
      <dc:date>2018-02-07T01:55:14Z</dc:date>
    </item>
  </channel>
</rss>

