cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1868
Views
0
Helpful
2
Replies

Firewall management port

Nilesh Waykar
Level 1
Level 1

Hi,

we are having a firewall asa 5520 .we have connected the  management port and inside port to internal network and dmz port to dmz network.now we need to configure tacacs and other management tool on dmz devices through management port. The problem is the management devices tacacs and other are placed in internal network.

2 Replies 2

Maykol Rojas
Cisco Employee
Cisco Employee

Hi,

So, what is the issue? Are you using TACACs with the ASA firewall or for devices on the DMZ? I dont see the problem, whatever the TACACs is located, the ASA should be able to get to it for proper aaa configuration. If you need to use the TACACS server for devices on the DMZ what you need to do is just to allow port tcp 49 across the ASA.

Mike

Mike

Hi,

I couldnt understand what the issue is. If you want to place the all the management tool and tacacs in the DMZ, then change the IP address and assign them in the DMZ segment.

Review Cisco Networking for a $25 gift card