04-11-2014 02:04 AM - edited 03-11-2019 09:03 PM
Hi i was going through ASA 5505 doco and i found the follwoing
In transparent firewall mode, you can configure two active VLANs in the Base license and three active
VLANs in the Security Plus license, one of which must be for failover.
So if i want to trunk 3 vlans can i do it or not it says that on eof them should be used for failover what does that mean i thought that we can use a failover using a IP address on interface???
my scenario is that my two ASA 5505 firewalls will be connected to two 3750 switches and i need 3 vlans to come to my outside ASA interface.
04-11-2014 09:06 AM
I do not believe it is possible to do what you want with the 5505. As the documentation says you the 3rd VLAN will be limited to being used as a failover VLAN.
You will need to upgrade the ASA to 5515-X or higher in order to do what you want.
--
Please remember to select a correct answer and rate
04-11-2014 09:08 AM
As per:
http://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/97853-Transparent-firewall.html#backinfo
Only two interface can be used for data, and a 3rd one for failover.
Regards,
Felipe.
Remember to rate useful posts.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide