cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
659
Views
0
Helpful
4
Replies

ASA 8.2 default route

jack samuel
Level 7
Level 7

Hello,

topology is as follows

exchange servers---core switch----firewall-----load balancer----5' nos ADSL and leased line

I want to terminate leased line on the ASA, now how i can route exchange traffic to leased line and corporate users internet traffic to load balancer.

thanks

4 Replies 4

Rishabh Seth
Level 10
Level 10

Hi Jack,

As per my understanding of your requirement, you are trying to segregate exchange traffic and corporate user traffic and end it over to different next-hops.

This requirement can be sufficed using PBR on ASA but it supported on versions 9.4(1) and above. 

So if you are trying to achieve the routing to different destinations then you need to route traffic based on destinations. With PBR we can take routing decision based on Ip and port.

You need to find the destination IP for exchange traffic / corporate traffic and create routes for it. 

Also let me know if your load balancer is capable of doing nat ?

HTH

RS

Dear Rishabh,

thank for the reply,

I want to do for the corporate users which are going to any destination i.e Internet, and also exchange server which is also going to any destination I have limitation of 8.2 on asa 5520 i cannot upgrade becz there is no memory. Please suggest any other configuration.

thanks

To achieve your requirement you require policy based routing to make routing decision based on the source IP and protocols. On your current verison PBR feature is not present. ASA version 9.4(1) and above supports PBR feature.

The latest OS version available for 5520 is 9.1(6). The newer 5500-x series ASA supports 9.4(1).


Hope it helps!!!

Thanks,

R.Seth

Mark the answer as correct if it helps in resolving your query!!!

Dear Rishabh,

Thanks for the reply, 

Before 8.3 cisco use to say use policy natting for pbr can we think alternate way  by keeping our eyes close for version 8.3 above. i am searching for the solution and i am requesnting to you if incase any of your collegue has come across to this situation.

thanks

Review Cisco Networking for a $25 gift card