cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
960
Views
0
Helpful
2
Replies

4 Firewall connection design

Hi All,

We have 4 firewalls: 2 FTD 2130 in HA (Active-Passive) pair and 2 ASA5525x in HA (Active-Passive) pair. In network redesign process my SV asked my to connect them directly. I prefer joining each one with one interface to switch and allocate vlan to them but SV tells he wants without SW directly connection. So, I wonder what will be design of this situation? 

Thanks in advance!

2 Replies 2

Hi,

Well you can do either, but it's recommended to connect via a switch:-If you do not use a switch between the units, if the interface fails, the link is brought down on both peers. This would apply to either ASA or FTD.

 

Reference here.

 

HTH

 

 

balaji.bandi
Hall of Fame
Hall of Fame

It all depends on requirement, how close these kits are. Do you have any HLD diagram how they are connected.

what is the role of each par of devices.?

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card