I have challenging design connecting ASA 5525X to Palo Alto firewall directly. Is there anyone deploy this type of solution in enterprise environment ? What are the pros and cons with architecture solution proposed? See attached topology
Depends how you want to configure ASA "transparent or routed mode" . In routed mode, BVI not needed see below sample configuration below for dual and single connection and attachment. I preferred dual connections cause its provide redundancy and high...
Why assign ip address on vlan 97 (native) on SG300-20? Native doesn't need ip address or SVI (L3) see attached for sample configuration based on your attachments. Note: represent XXX with any number of your choice.