02-07-2011 07:17 PM - edited 03-11-2019 12:46 PM
Hi,
I'm interested in layer-2 firewall feature set.
internet--->firewall---->(load balancer)
load balancer is in our internal network....so all traffic will hit the load balancer VIP and they load balancer will route traffic to the server. load balancer and servers needs to be segregated from our internal network...
is it possible with ASA's layer-2 feature set?
02-07-2011 07:20 PM
Hi Gavin,
I don't think you should have any problems.
The ASA can act as a layer 2 firewall in transparent mode (much as a switch) but with the advantage of still having the firewall apply its security rules to the traffic passing through it.
Federico.
02-07-2011 07:21 PM
Do you mean L2 (transparent) firewall? If yes, then the answer is yes, ASA firewall supports 2 modes: routed (L3) mode and transparent (L2) mode.
Here is configuration guide on the 2 firewall modes:
http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/fwmode.html
Hope that helps.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide