Quick question, where do you want to deploy this? Remote office/branch office or in the Campus Environment?My previous post is assuming that you are looking to deploy this in the Branch office or Remote Home Office.Thanks,Mynul
Massimiliano,ISR routers can do the job for you. Here is the link for NAC support on ISR:http://www.cisco.com/en/US/docs/security/nac/appliance/support_guide/license.html#wp54131Zone-Based FW has the capacity to filter peer-to-peer traffic on the IS...
Hello Bindong,As promised, here is the response -In Multi-Context Mode, you can directly access the other context as follows:https://AdminCtxtIP/asdm_handler?context=ctxnameBottom line is, you always needs to access other context through the admin co...
Hello Haitham,It shouldn't cause any problem (unless you hit a bug in future, in that case you have to deal with two firewalls). Question is, if there is a real advantage of adding one extra level of NAT. I would say "NO". Disadvantages are that -...
Hello,Please see inline -> Do I need to remove> nat (DMZ) 0 0.0.0.0 0.0.0.0 0 0 No, you don't have to because NAT with an ID (in your case) will take precedence over NAT with ID being ZERO. So, if you have the above stamt along with the new one, the...