cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

Welcome to Cisco Firewalls Community


304
Views
0
Helpful
0
Replies
Highlighted
Beginner

ASA mode selection with HSRP in L2/3 GW

hi all

as attached I need configure redundant L2/3 gateway with single ASA in DMZ's downstream. and in DMZ's upstream also has an ASA.

luckily there only has single DMZ switch need to be connected to both of ASA...

I'm plan to use routed port in L2/3 gateway and HSRP for guarantee it's redundancy(under the gateway has serveral different subnet. but not apper in attached picture). and I have to use static routing protocol in L2/3 gateway, if needed. and use port's redundanc feature in ASA.

here is my question:

1. From above perspective what is the better mode for ASA, routed-mode OR transparent mode?

2. if I've choieced to use routed-mode with single context, then do i have to configure dynamic routing protocol in both ASA? if possible, i want use static routing in downstream's ASA. and if i want pass through multicast in ASA, does routed-mode support this?

Single ASA with Redundant gateway.jpg

thanks

Taixing