10-18-2010 08:51 AM - edited 03-11-2019 11:55 AM
Hi,
I wondering what is the best practice when changing a sub interface to physical interface?
Currently my "Outside" interface on an ASA 5550 (8.2) is assigned to a sub-interface. Due to a VoIP project it is a requirement that a priority queue is configured on the ASA so that voice traffic can be prioritised. As I can't add a prioity queue to a VLAN interface I will have to move the outside interface from a sub-interface to the physical interface.
Providing the ACLs are still assigned to the named interface "Outside", am I right in assuming that once the interface has been reconfigured, the ACLs will work as before?
eg:
access-group acl_name in interface Outside
Thanks in advance
10-18-2010 08:57 AM
Hello Lee,
As far as i know , you must re-apply the access-list on the interface , and also any NAT configuration regarding this deleted interface.
HTH
Dan
10-18-2010 11:35 AM
Dan is right. Any line ssh, nat, acl, aaa - that refer to the interface name needs to be added again after you re-configure the interface.
-KS
10-19-2010 02:05 AM
Thanks for the responses, now I know what I have to write in the change request!
Cheers
Lee
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide