cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
785
Views
0
Helpful
1
Replies

Security issue?

TheGMasta
Level 1
Level 1

Hello there,

would it be a huge security concern if the outside interface of an ASA is on the same switch where the office's LAN is attached? and there is no vlan set up on this switch, which by default is the vlan 1, big flat network

my personal view is there should be no chance for outside intruders to gain access to the LAN unless the ASA gets passed... or is there any?

the ISP next hop is the outside interface of the ASA, which has mask of /30. how can other servers and workstations be exploited and attacked when they are on the same vlan/switch as ASA? by broadcast packets or...? but how? their default gateway is set to the inside interface of the ASA

Thanks 

1 Reply 1

grant.wilson
Level 1
Level 1

Ideally you would have a different switch for inside and outside just in case it gets compromosed.  Although if you have the FWSM then it is in the same switch.