Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, Topology: Data Center Link -> ASA (Active/Standby) -> Cisco Switch with trunk in redundant modeQuery: If the switch which receives incoming traffic fails, how does the active ASA route the traffic to the redundant switch which is directly connect...
hi, There are several ways of configuring load balancing of outbound traffic on a single router with multiple links such as per-packet, per-destination, CEF etc. However, is there any way by which 4 E1 lines divided across two routers (i.e. two each)...
Could anyone please explain, how do Cisco ACE VLANs get mapped to physical ports on the Cat6500 Switch Ports. For e.g. lets says MSFC & ACE has 5 VLANs defined namely VLAN1, 2, 3, 4, 5. Every VLAN has a server farm. When these server farms are connec...
hi, What is the difference between multi-match and first-match, match types within policy-map commands ? Command reference guide isn't quite clear. Reply with examples would be great. Rgds.
Greetings!The requirement is to design a two layered defense architecture. The first logical layer shall includea) Cisco ASA with CSC-SSM first and thenb) Cisco ASA with AIP-SSM(No server farms placed between CSC-SSM and AIP-SSM)The second layer shal...
Thanks.Yes, the scenario is as you have stated. On the same lines, if another pair of ASA is placed behind the switch i.e. ASA - Switch - ASA, and one of the second pair of ASA's fail, how will the failover be trickled through the topology.Is is it t...
I am going thru a certified Cisco configuration and I can see that a policy-map with multi-match has multiple classes originally defined with first-match that has 'match virtual address' statements. So, within multi-match definition how does it ident...
On the same note Joe, is it possible to use a private IP for 'standby' on the outside interface of the ASA (knowing that the active is configured with a public IP). Just to save the public IP for another use.
You had mentioned in earlier post that Cisco ASA IPS module doesn't have the ability to re-encrypt the trafffic. Is the same applicable to Cisco ASA CSC module as well. Regards.