08-10-2020 04:56 PM
Hi everyone,
Following up a SOHO network that I am designing, I have an ASA 5505 firewall behind a router, and I need some end devices like the NAS and FTP server to be configured with static IP addresses so that I can access them remotely via DDNS. However, the ASA firewall provides only DHCP IP addresses, and I wonder if there is some sort of a workaround to solve my issue.
Having said that, I have already considered breaking up my LAN in two different subnets, one behind the firewall and another behind the router, but I would prefer if all end devices are behind the firewall though, so any advise is highly-appreciated, thanks in advance.
Solved! Go to Solution.
08-10-2020 11:37 PM
Hi,
You can manually configure the devices with a static IP address. Just make sure if using the ASA for DHCP, that those IP addresses are not given out. Alternatively DHCP reservations are supported in ASA 9.13 and above
https://www.cisco.com/c/en/us/td/docs/security/asa/asa913/release/notes/asarn913.html
HTH
08-11-2020 10:25 AM
08-10-2020 11:37 PM
Hi,
You can manually configure the devices with a static IP address. Just make sure if using the ASA for DHCP, that those IP addresses are not given out. Alternatively DHCP reservations are supported in ASA 9.13 and above
https://www.cisco.com/c/en/us/td/docs/security/asa/asa913/release/notes/asarn913.html
HTH
08-11-2020 10:18 AM
Thanks for pointing out this to me.
I'll assign static IP addresses to the NAS and FTP server as per your advise, while excluding them from the pool of DHCP.
My ASA has IOS version 8.4(2) matched to ASDM version 6.4(5), and I struggled to make things work successfully between ASDM and Java, so I'm afraid upgrading it and messing things up.
Are static IP addresses counted along the number of concurrent IP addresses that the ASA support (10 for my Base License)?
How does the ASA consider counting concurrent IP addresses?
08-11-2020 10:25 AM
08-11-2020 11:22 AM
Ok noted, thanks Rob. I should then reconsider updating the IOS and ASDM versions for the long term. I hope I won't have to deal with Java issues.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide