cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
619
Views
0
Helpful
4
Replies

VLAN Mapping for ASA5525

romero_enrico
Level 1
Level 1

Hi Team,

Seeking for your assistance.

To start of, we recently purchased a Cisco ASA5525 with Firepower services.

The reason why we purchased this is to utilize the UTM features of the Firewall.

In our network we have a Juniper Firewall with expired licenses which is on High Availability.

My boss doesn't want to remove the firewall and they wanted to place the ASA5525 on top of the Juniper Firewall.

The setup shoud look like this:

The Juniper has sub-interfaces and Multiple VLAN.

I was wondering if how can I let the traffic pass from the ASA5525 going to the Juniper.

I got a suggestion from my buddies that to get the WAN connection of the Juniper then plug it to the ASA5525 then from the ASA5525 plug it to the core switch with different IP but same subnet of their LAN network.

The main goal here is to UTILIZE the URL Filtering and AVC functionality of the ASA5525.

I'm just new to this ASA5525 and I have no knowledge on how to setup the Juniper.

I just recently got hired here and I'm having a hard time figuring this out.

Hoping for your help guys.

Thanks in advance!

Cheers,

Enrico

4 Replies 4

Hello,

Do the juniper and core switch have the same vlans and sub interfaces?, if that is the case you might need to attach the ASA  on the network as a transparent firewall. Could you also please let me know which software version are you running?

Hi,

The core switch is on trunk mode.

The ASA5525 is running on version 9.2(4).

Thank you for your reply.

I would agree. Transparent firewall is the best option here. 

How am I going to configure it via Transparent firewall? What are the other parameters that I need to consider here? I got another recommendation that it should be on BVI or Bridge mode?

How can I configure it?

So new in Cisco Networking.

Review Cisco Networking for a $25 gift card