01-07-2009 04:14 PM - edited 03-09-2019 09:56 PM
Readers,
Is it possible to configure redundant interfaces on the Management port?
Thanks,
Timothy
Solved! Go to Solution.
01-08-2009 04:29 PM
Ya Timothy. I think that was what I had replied to. Technically not possible to group, on the same firewall. If you need redundancy, you need to have a failover firewall.
or else, if you want, u can monitor the firewall on other ports available.
Does this answer your question ?
Happy New year. have a great year ahead.
Raj
04-01-2009 09:41 PM
Hi Raj... Sorry I don't agree with your response here.
It is possible to group interfaces on the same firewall for redundancy with the "Interface Redundant" command. Unfortunately though the Managment port can't be included in a interface bundle , even if you are using it to pass traffic as a standard port....which doesn't make sense to me.
01-07-2009 09:28 PM
Timothy
normal ASA boxes just have a single management interface.. I really dont feel the need for redundancy here.. If you need one, you can get a failver ASA box, and build up redundancy..
in any case, you have other interaces like inside, through which you can enable management, like telnet, http etc, if required.. or any other DMZ interface (say network management DMZ)... its all flexible.. with all these, i really dont see any need for a redundant management port...
Hope this helps.. all the best..
Raj
01-08-2009 02:26 PM
Raj,
If possible, I was looking for a technical answer rather than your feelings for the soundness of my question.
Thanks,
Timothy
01-08-2009 04:16 PM
Sorry Timothy.. Did not get what you are saying ! wasnt it technical ? anyways, all the best...
Raj
01-08-2009 04:23 PM
Raj,
All I ws trying to find out was is it technically possible to configure another physical interface on an ASA5510 as a management interface and then have it assigned along with Management0/0 as a redundant group?
Thanks,
Timothy
01-08-2009 04:29 PM
Ya Timothy. I think that was what I had replied to. Technically not possible to group, on the same firewall. If you need redundancy, you need to have a failover firewall.
or else, if you want, u can monitor the firewall on other ports available.
Does this answer your question ?
Happy New year. have a great year ahead.
Raj
01-08-2009 05:50 PM
Raj,
Ok, Thanks. You have answered my question.
Many Thanks for your quick reply.
Timothy
01-08-2009 07:15 PM
You are welcome Timothy.. We are always here to learn more and share our knowledge & experience... let us know if you need any more infoo... :)
Raj
04-01-2009 09:41 PM
Hi Raj... Sorry I don't agree with your response here.
It is possible to group interfaces on the same firewall for redundancy with the "Interface Redundant" command. Unfortunately though the Managment port can't be included in a interface bundle , even if you are using it to pass traffic as a standard port....which doesn't make sense to me.
04-02-2009 09:45 PM
Great answer! The level of detail that you have provided is vey much appreciated.
ThankYou!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide