cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
510
Views
0
Helpful
3
Replies

NGFW

#TCN
Level 1
Level 1

Hi

Do you know if there is the ability to route traffic based on application type on ASA NGFW with Firepower? - I know we can inspect application data but can we do more when we know what the application is?

e.g. 2 x internet connections, based on "application type" route via ISP1 or ISP2  .....effectively route non critical traffic via ISP1 (Facebook,web and critical traffic via ISP 2.

Cheers
James

 

1 Accepted Solution

Accepted Solutions

Philip D'Ath
VIP Alumni
VIP Alumni

No, you can not do this.  You can only route based on the destination address, which will sometimes do the trick.

You need a router and PBR to do this.

View solution in original post

3 Replies 3

Philip D'Ath
VIP Alumni
VIP Alumni

No, you can not do this.  You can only route based on the destination address, which will sometimes do the trick.

You need a router and PBR to do this.

#TCN
Level 1
Level 1

Many thanks for your response

Regards,

James

You can do that, but not inside of FirePOWER. Routing is purely done on the ASA and there you have PBR available. With that you can send traffic based on the destination-port out of a particular link. You can find more info on PBR in the config-guide.

Review Cisco Networking for a $25 gift card