05-02-2018 07:53 AM - edited 02-21-2020 07:41 AM
Hi,
We are using 5506x version 9.8.x with firepower. We wanted to manage SFR and ASA with IPs(192.168.1.x) from subnet behind the ASA indside interface. This subnet is terminated in L3 switch behind ASA.
We have a route for this subnet (192.168.1.x) in ASA towards L3 switch. ASA management interface is connected in the switch and SFR is configured with IP 192.168.1.10 and working properly.
can we use the same mgmt interface to mange ASA ?
If i assign an IP on Management1/1 from 192.168.1.x, we will be able to manage firewall via this IP ? Which default gateway do mgmt interface routing table prefer ? if mgmt routing table is maintained separately, how do i define default gateway for Mgmt interface ?
Subnet 192.168.1.x will be considered as directly connected subnet in ASA ?
Solved! Go to Solution.
05-03-2018 05:06 AM - edited 05-03-2018 05:07 AM
add: route management 0.0.0.0 0.0.0.0 10.10.10.1 for instance
that should do it (this is off an asa running 9.8)
05-04-2018 06:41 AM
Yes. I tried to add the IP and route. ASA is treating MGMT routing table as different than the global routing table. I am able to manage ASA as well as the SFR with the same interface on different IP from the same subnet.
Thank you all
05-03-2018 01:51 AM
05-03-2018 05:06 AM - edited 05-03-2018 05:07 AM
add: route management 0.0.0.0 0.0.0.0 10.10.10.1 for instance
that should do it (this is off an asa running 9.8)
05-03-2018 06:18 AM
05-04-2018 06:41 AM
Yes. I tried to add the IP and route. ASA is treating MGMT routing table as different than the global routing table. I am able to manage ASA as well as the SFR with the same interface on different IP from the same subnet.
Thank you all
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide