cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
428
Views
5
Helpful
1
Replies

2 Asa Firewall Internal Network

Shane Riley
Level 1
Level 1

Just wondering if you guys/ladies can push me in the right direction.

I am planning on having 2 ASA Firewall on my internal networks connected to 2 different ISPs. See diagram above.

Is this the way to go? What i want to accomplish is:

People connecting with VPN should go trough the 5512 firewall. But the problem is reaching the 172.26.x.x network from the anyconnect vpn users.

Any ideas? 

I know that i can use the 5505 for the vpn users etc. but i rather use the 5512.

Is this a total NO NO???

 

 

 

 

1 Reply 1

Maykol Rojas
Cisco Employee
Cisco Employee

Hello;

 

If the switch does support routing, you can do a bunch of stuff. Of course, you may need to have routes on both ASAs, and the switch would do the rest of the routing.

 

I dont see the problem. On the ASA 5512 put a route to the 172 network pointing to the switch. The switch has to have the same route but pointing to the 5505.

Then you do the same for the return part.

 

Let me know.

 

Mike.

Mike
Review Cisco Networking products for a $25 gift card