03-08-2011 12:03 PM - edited 03-04-2019 11:41 AM
Guys you are the experts, and I need your help!!!
I have the network in the attached diagram, and I was given 2 ASAs 5520, 1 IPS 4240, and 1 Cisco ADE 1010 to introduce in the network. At this point, I need experts help on where to place these equipments in the network. Your suggestions will be great appreciated. Please see attached diagram. Thank you!
03-08-2011 03:32 PM
To iron out a solid design we would need to know a lot more information. hat being said he is a rough outline of what I think is trying to be acheived.
03-08-2011 03:45 PM
Hi ,
Its is good to place your both ASA below to your two router , these asa can run in HA mode . Similarly your cisco ADE 1010 can be kept on DMZ zone on ASA segment . Your IPS can be kept inbetween your R1, R2 and ASA box .
In this setup u need to have all predefined acl binded on outside interface of asa for permitting site 1 , site 2 ,site 3 traffic , else it will block the traffic by default . All routing can be be handled by ur core router and R2 & R1
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide