06-02-2015 02:07 AM - edited 03-11-2019 11:02 PM
Hi,
I'm setting up an ASA5506X for the first time, and I have problems understanding how I will be able to remotely manage this device.
The Firepower module can only be accessed from the m0/0 interface, which is management only, so I can't route through that interface. And I can't connect to it from the other side of a VPN.
This is a remote site that will connect to the main office using site to site VPN. How can I access the Firepower on the m0/0 interface from the main office?
There is no other router there, only a L2 2960 switch.
Solved! Go to Solution.
06-02-2015 05:58 AM
Yes - the key point to remember about the FirePOWER module is that it has its own routing instance independent of the parent ASA.
It can only use the physical management interface.
06-02-2015 03:05 AM
I found the answer to my question here:
http://www.cisco.com/c/en/us/td/docs/security/asa/quick_start/5506X/5506x-quick-start.html#pgfId-136918
Remove IP from the ASA management interface and connect it into the same VLAN as the inside network.
06-02-2015 05:58 AM
Yes - the key point to remember about the FirePOWER module is that it has its own routing instance independent of the parent ASA.
It can only use the physical management interface.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide