cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
321
Views
0
Helpful
1
Replies

ASA 5525-X firewall routing issue

Abeeg14
Level 1
Level 1

Hi All

Anyone can I help me?

The LAN have 0ne ASA5525 cisco external firewall,two 3650 cisco switch for  DMZ directly connected to external firewall. Two 4503 cisco switch for collapsed switch directly connected to exiternal firewall in the inside part, Two 3650 cisco switch uses  server farm   directly connected to collapsed switch. HSRP Load balances  in DMZ ,Server Farm and collapsed switch are configure ,same vlan are active in SW01 some are standby ,in the other switch( SW02) are also the standby vlan in sw01 be active and the active vlan in sw01 standby vlan here .Raped-PVST STP protocol are configure only in Collapsed switch.the active vlan in SW01 primary for that  the standby vlan are secondary  .in sw02 is the revers .  VTP are configure in all switch .the two collapsed switch as server mode ,vlan are configure in collapsed switch using VTP redistribute  to client switch. In DMZ and Server farm switch are configure transparent mode, in 2960 Access switch directly connected to Collapsed Switch configure as Client.  Dynamic routing OSPF are configure  in all layer 3 device. 

the problem is external firewall the collapsed core switch network (the  active and standby vlan) learn only from collapsed switch01.and in the DMZ side also only learn form only one switch .users only access internet the active one only .from DMZ to server farm can ping the active one only .

1 Reply 1

Leo Laohoo
Hall of Fame
Hall of Fame

Duplicate thread. 

Kindly post all response(s) into the main thread (HERE).

Review Cisco Networking products for a $25 gift card