01-05-2009 12:03 AM - edited 02-21-2020 03:11 AM
Hi All,
I have ASA 5520 installed in network. This ASA is having SSM module with 4 gig ports.
Can these ports on SSM module be utilized as normal interfaces of firwall? Is if , a saparate zone, for example DMZ1, can be introduce on the gig ports of SSM module?
Pls advice!
Thanks!
01-05-2009 12:33 PM
hello Patni
Yeah.. you can.. these are extension modules, which can be used to increase the number of DMZ interfaces.. by default the inbuilt Gig interfaces are taken as inside, and outside segments..
To connect to different server segments, you can use the 4 port GE module, and configure DMZ's on those. In case you need more than 4 DMZ's, ASA also supports VLAN trunking, which means on a single GE port, you can configure multiple DMZ's.. :)
Hope this helps.. all the best.. rate replies if found useful..
Raj
01-05-2009 11:53 PM
Hi Raj,
Firstly thanks for replying!
Hope you have understood my worry point, which is deploying/configuring Gig interfaces on SSM module itself. ( other than the default interface availiable on ASA 5520).
--------
01-06-2009 06:28 AM
Hey
Ya.. you can.. 4 GE module will just extend your subnets or DMZ.. you can , for sure deploy and configure Gig interfaces on SSM, according to your network design. No need to worry.
Hope this helps.. all the best..
Raj
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide