cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1017
Views
2
Helpful
9
Replies

Redundant Interfaces with Management0/0 on ASA5510

tbogie_gvds
Level 1
Level 1

Readers,

Is it possible to configure redundant interfaces on the Management port?

Thanks,

Timothy

2 Accepted Solutions

Accepted Solutions

Ya Timothy. I think that was what I had replied to. Technically not possible to group, on the same firewall. If you need redundancy, you need to have a failover firewall.

or else, if you want, u can monitor the firewall on other ports available.

Does this answer your question ?

Happy New year. have a great year ahead.

Raj

View solution in original post

Hi Raj... Sorry I don't agree with your response here.

It is possible to group interfaces on the same firewall for redundancy with the "Interface Redundant" command. Unfortunately though the Managment port can't be included in a interface bundle , even if you are using it to pass traffic as a standard port....which doesn't make sense to me.

View solution in original post

9 Replies 9

sachinraja
Level 9
Level 9

Timothy

normal ASA boxes just have a single management interface.. I really dont feel the need for redundancy here.. If you need one, you can get a failver ASA box, and build up redundancy..

in any case, you have other interaces like inside, through which you can enable management, like telnet, http etc, if required.. or any other DMZ interface (say network management DMZ)... its all flexible.. with all these, i really dont see any need for a redundant management port...

Hope this helps.. all the best..

Raj

Raj,

If possible, I was looking for a technical answer rather than your feelings for the soundness of my question.

Thanks,

Timothy

Sorry Timothy.. Did not get what you are saying ! wasnt it technical ? anyways, all the best...

Raj

Raj,

All I ws trying to find out was is it technically possible to configure another physical interface on an ASA5510 as a management interface and then have it assigned along with Management0/0 as a redundant group?

Thanks,

Timothy

Ya Timothy. I think that was what I had replied to. Technically not possible to group, on the same firewall. If you need redundancy, you need to have a failover firewall.

or else, if you want, u can monitor the firewall on other ports available.

Does this answer your question ?

Happy New year. have a great year ahead.

Raj

Raj,

Ok, Thanks. You have answered my question.

Many Thanks for your quick reply.

Timothy

You are welcome Timothy.. We are always here to learn more and share our knowledge & experience... let us know if you need any more infoo... :)

Raj

Hi Raj... Sorry I don't agree with your response here.

It is possible to group interfaces on the same firewall for redundancy with the "Interface Redundant" command. Unfortunately though the Managment port can't be included in a interface bundle , even if you are using it to pass traffic as a standard port....which doesn't make sense to me.

Great answer! The level of detail that you have provided is vey much appreciated.

ThankYou!