06-28-2018 06:40 PM - edited 02-21-2020 07:55 AM
Hi Friends,
I will implement the follow topology, I have the follow doubts, can you help me?
1-) What model of ASA do you recommend to running firepower , with URL filter and Antimalware to Internet access, and IPS and Antimalware beetween all subnets to protect communication beetween these subnets? I need security and perfomance(throughput).
2-) Do you recommend any change on this topology?
Solved! Go to Solution.
06-30-2018 10:02 AM
06-28-2018 08:51 PM
06-30-2018 06:37 AM - edited 06-30-2018 06:39 AM
Hi Francesco
Follow answers, tks !!
Can you detail what are your requirements in terms of throughput?
The custommer will access internet over this ASA, im afraid if i enable antimalware and IPS beetween interfaces , decrease internet access and server access, for example file server.
What's your wan bandwidth?
Two Internet Links of 100 Mb, one active another as backup.
How many users will go through this asa/ftd?
Around 300 users
Do you need vpn? If yes how many remote users?
We need around 50 connections anyconnect simulaneous
For the design:
- will you have done layer 3 at the core level?
I have a layer, but i want ASA as default gateway of these 13 subnets, to security.
- is your goal to filter all communications between all ftd zones?
I will block communication between these 13 subnets, these subnets will only access some ports of server subnet, for example file server.
06-30-2018 10:02 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide