Cisco Firewall :: ASA 5510 And Having Two Outside Interfaces For Voice And Data

Feb 13, 2012

I have a question regarding firewall configurations. Is it possible to have two interfaces ( for two internet service providers) one for voice and one for data. Can I have two Outside Interfaces that one will apply to a pppoe client group and the other will apply to a static IP? Is this possible and if so What would be the steps on applying this connection? Also to note I have a point to point connection already established for the pppoe. I also have another point to point connection for data, but however I do not know how to apply this to the firewall.

View 3 Replies


ADVERTISEMENT

Cisco :: PIX 525 Firewall / Voice Network Not Working After Data Network Migrated

Feb 28, 2012

My company have a Cisco PIX 525 firewall which is cater for NOC internal data network and also voice network, the subnet for data network is 192.168.2.0/24 and the subnet for voice network is 172.16.2.0/24. someday this NOC firewall was faulty. I was migrated the data network from this NOC firewall to the other temporary firewall just at the moment. And the voice network i migrated it from where it orginal at NOC firewall to a VOIP system which actually having a connection with my temporary firewall(This temporary FW only to take the traffic of data network). After the migration of data network from old firewall to temporary firewall and also the migration of voice network from old firewall to PABX system. The subnet for data network remain the same as 192.168.2.0/24, but the subnet of voice network i edit from 172.16.2.0/24 to 192.168. 3.0/24.Now when i want to use one Cisco router 2600 to replace this temporary firewall then facing problem at the voice network....The data network after migrated from temporary firewall to new 2600 is ok, users can browsing. But when i trying to at the same time when the data network been migrated , it will affect the voice network which still located at PABX. ..user cannot make call...I was thinking reason because this voice network which currently in 192.168.3.0/24 is tight to somewhere on the 192.168.x.x at the old firewall internetwork. So, when i migrated the data network over to new router, it will also cause the failure of voice even thought after i migrated the voice system to new router.So when i do the disaster recovery back to the temporary firewall for both data and voice. The voice is resuming to normal.

View 4 Replies View Related

Cisco Firewall :: ASA 5510 / Setup A Priority Queue For Voice And Video Traffic?

Mar 7, 2013

Trying to set-up a priority queue for Voice and Video traffic, below is the current ASA config. The WAN link is 6mb, trying to limit the Internet traffic to 4mb and save 2mb for the PQ, config belowTraffic just isn't hitting the PQ
 
priority-queue outside
  queue-limit   512
  tx-ring-limit 200
 !
  class-map Video
description Video
match dscp af31

[code]....

View 6 Replies View Related

Cisco Firewall :: ASA 5510 - IP Sec VPN On Sub-interfaces

Jun 20, 2012

Can  ASA sub-interfaces run separate IP Sec VPN tunnels eg
 
There are 02 sub-interfaces of 01 physical interface of Cisco ASA5510 [ASA Version 8.2(5)] and I need to run 01 IP Sec VPN tunnel on each of these

View 1 Replies View Related

Cisco Firewall :: Communication Between Interfaces Of ASA 5510?

Mar 12, 2011

I configured ASA 5510 ...
 
Totally it had 5 ports..
 
How to provide communication between two different interfaces which had configured as same security level?
 
How many trunks will support ASA 5510 with base-license?
 
How to configure trunk to an interface with different VLNs( Router on a stick).

View 6 Replies View Related

Cisco Firewall :: ASA 5510 With Two Outside Interfaces Which Is In Separate ISPs

Jan 5, 2013

I have ASA5510 with PLUSE License.I have 2 Inside interfaces as STAFF and MAIL and two Outside interface OUT_STAFF and OUT_MAIL which is in separate ISP's.now i want to nat STAFF to OUT_STAFF and MAIL to OUT_MAILbecause I'm having two default routes it gets impossible to do.

View 1 Replies View Related

Cisco Firewall :: ASA 5510 Communication Between Two Internal Interfaces

Jun 11, 2013

I've been following most of the comments in regarding how to allow communication between two internal networks on a ASA5510 8.2.5 But I am still a little confused about to how to set my firewall. I made chages to it and still do not have the desired results.
 
I need to allow comunication between Interface 0/1 and Interface 0/2. See configuration file with fake or dummy ip address below.
 
ASA Version 8.2(5)
!
hostname ciscoasa
domain-name lxx.com

[Code].....

View 1 Replies View Related

Cisco Firewall :: ASA 5510 / Provide Communication Between Two Different Interfaces

Mar 12, 2011

Is it possible to provide communication between two different interfaces which had configured as different security level in ASA 5510?

View 3 Replies View Related

Cisco Firewall :: Communication Between 2 Inside Interfaces On ASA 5510

Oct 23, 2011

I have a Cisco ASA 5510 configured to access the internet, with an:

inside interface (ethernet 0/1) 130.130.0.254 and outside interface (ethernet 0/0) x.x.x.x
 
I have now configured another inside interface (ethernet0/2) on ASA with the IP 172.16.0.254 and I have connected it directly to another switch with a management IP 172.16.0.5.
 
The problem is that the two inside interfaces (130.130.0.254 &172.16.0.254) cannot communicate with each other thus the e0/2 172.16.0.254 interface cannot access the internet.

View 5 Replies View Related

Cisco Firewall :: ASA 5510 - 2 Internet Interfaces Without Traffic

Jan 15, 2013

I need to route to sub nets form 2 different ASA interfaces. The ASA also has an outside interface works like gateway for internet access. Here is my configuration:

ASA Version 8.2(1)
host name ICE3
names
interface Ethernet0/0
name if outside
security-level 0
ip address 201.199.xxx.xx 255.255.255.248
[Code]....

View 9 Replies View Related

Cisco Firewall :: 5510 ASA Cannot Create Sub Interfaces For Intervlan Routing

Apr 8, 2013

I am trying to setup intervlan routing with a Cisco ASA 5510 and two 2960-S switches. The 5510 currently is using ASA Version 7.0(2) and has a base license. I tried to create a sub interface today based on some info I found regarding the routing piece and it didn't recognize the command. I'm thinking I may need to update the IOS code or the license on the firewall. I know the syntax was correct because I looked it up and found it in a Cisco document.

View 15 Replies View Related

Cisco Firewall :: ASA 5510 Redundant Interfaces With Stack Switches

Jun 10, 2013

we have two ASA 5510 connected in failover, and a pair of cisco 2960s switch connected in stack. Currently one interface of primary ASA is terminated on switch1 and a interface from standby is connected to switch2 as Inside, and switch1 and switch2 are in stack. for redundancy purpose i want to use multiple interfaces of ASA for inside , so first i thought to use etherchannel , but it has a limitation that , it cannot be terminated on stack switch(as per cisco document [URL]
 
So my question is :
 
1. can we use redundant interface feature where  2 physical interfaces combined to a redundant interface (eg interface redundant 1) for inside redundancy purpose.

2. Can these ports from primary/standby ASA terminated on stack switches (2960s), will this work (if the switch with active port goes down, will the other port take over in the redundant interface with the other switch).

View 1 Replies View Related

Cisco Firewall :: 5510 - Get Internet Connectivity On ASA Inside Interfaces?

Dec 30, 2012

I have a Cisco ASA 5510 with 3 inside interfaces each connected to a 3750X switch port in a vlan. Outside interface is connected to external router with 209.155.x.x public IP. Static route exists for outbound traffic on outside interface.
 
3750X is configured for inter-vlan routing. VLANs 10, 20, and 30 have 172.16.x.1 IP address with static routes pointing to the each of the ASA inside interfaces - 172.16.x.254. Connected hosts are configured with gateways pointing to the appropriate vlan interface IP - 172.16.x.1.
 
Inter-vlan routing appears to be working - I can ping back and forth between hosts on different vlans, and I can ping each vlan IP.I can also ping each ASA inside interface from a host in the appropriate vlan, but I cannot ping internet sites (4.2.2.2 or 8.8.8.8) from hosts on the inside interfaces.
 
I can ping 4.2.2.2 from the ASA CLI. I can ping internal hosts on vlans 10,20,30 from the ASA CLI. But, no luck with pinging from inside host to internet hosts

View 12 Replies View Related

Cisco Firewall :: Unable To Create VLAN Interfaces In ASA 5510

Nov 13, 2011

Unable to create VLAN interfaces in ASA 5510

View 1 Replies View Related

Cisco :: CIPC Getting IP Address From Data Or Voice

Jan 9, 2012

Since CIPC is isntalled in the PC, and PC definitely getting an IP address from the data IP network segment instead of the voice IP network segment, so how to gurantee the following? 1. How the CIPC registered to the CME/CUCM 2. How to gurantee the QoS for the CIPC's voice traffic since the source IP address of the CIPC is belong to the IP network segment?

View 4 Replies View Related

Cisco :: Voice And Data Network Using 3745 And 2811?

Sep 7, 2012

I intend to deploy a voice+data network using some old 3745 and 2811. The network in effect has six 3745 in a hybrid topology at different locations and each having three WIC-2T, one WIC-4T, three NMHDV-2E1. That's pretty much juicing out the maximum from these routers These will serve as my core routers and for access I will be using my 2811s with more VWICs and lesser WIC-2T to give voice and data to subscribers. The 2811s will have links to multiple 3745s. The NMHDV-2E1 will serve for the voice needs at the 3745 locations. All the WAN links will be E1. All my telephones will be on analog voice using traditional EPABX with CEPT/ PRI E1 cards for connecting to the routers. And for data, ethernet ports.Two of the routers will have E1 links to the PSTN and Internet which has to be extended to all my folks. Now, for the tricky part, all my network modules are refurbished stuff from ebay and all the ports will have links on them. I intend to use OSPF with only the backbone area.

View 7 Replies View Related

Cisco Firewall :: How To Configure 4GE SSM Or ASA 5510 Internal Data Ports

Feb 4, 2013

I have inherited an asa 5510 whit 4GE SSM module installed. The asa runs fine, but i can not use the 4GE SSM ports. Using  ASDM or console i can get and configure the gigabitethernet1/x ports but i can not get traffic on it. The ping from the console to the ip address of the Gigabitethernet1/0 is successful. On switches or hubs connected to those ports i can not see the port's mac address. The two Internal-data0/0 and Internal-data1/0 are down and i can get they up. How to configure 4GE SSM or ASA internal-data ports.

View 8 Replies View Related

Cisco Firewall :: ASA 5510 Tunnel - Replicate Data Between Two Locations

Oct 3, 2012

I am not a ASA expert but I have configured them few times. I have a vision of a task I have to complete but not sure if it is practical or how to go about doing it.
 
We two locations, Location A and Location B. Both locations have a 100MB internet conection. Location A has a ASA 5510. Location B has a 5505. Users at both locations access the internet via their respective ASA. Location A is the headquarters and Location B is a disaster recovery site. We want to setup a tunnel between both ASAs. This tunnel will be used to replicate data between the two locations for DR purposes. We need the users to still use the same pipe to get to the internet but want to allocate 10MB for internet use and the remaining 90MB for the DR tunnel.

View 30 Replies View Related

Cisco Switches :: Passing Voice And Data Vlans On SG200-08P?

Apr 12, 2012

I'm struggling with a configuration issue on the Cisco SG200-08P. We are using the Cisco SG200-08P on a mobile cart that will go from class room to class room that will have computer and cisco Voip phone plugged into it. The issue is that each of our closets are in differnt VLANS ( 1 voice and 1 data....lets say data vlan 20 and voice vlan 2025 for conversation) and that we route to each closet.It would be great if I could just create a generic data and voice vlan to dynamically pick up what the upstream switch has however, it seems that I've been unsuccessful in doing so. I can pass the data Vlan no probablem. The upstream switch port is set to access port and a switch port access voice vlan (these are 3750x switches) If the above is not possible I guess I will take what I can get. Should I just create data vlan 20 and voice vlan2025 on the Cisco SG200-08P and make a trunk port on the Cisco SG200-08P and a trunk on the 3750x? Is there an option on the Cisco SG200-08P to tag voice traffic?I'm also concerned with VTP and I did not see an area in the Cisco SG200-08P to set that as a client and transparent mode.

View 6 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 Failed Authenticate With Same Voice And Data Vlan

Apr 14, 2011

I have a question its posible to authenticate an cisco phone and PC with the same vlan(voice and data)when i do this configuratión , the phone and pc dont work. The phone display registering and never finished.interface FastEthernet0/5 switchport mode access switchport voice vlan 1 authentication event fail action authorize vlan 11 authentication event no-response action authorize vlan 11 authentication host-mode multi-domain authentication port-control auto authentication periodic authentication violation protect mab dot1x pae authenticator dot1x timeout tx-period 10 dot1x max-reauth-req 3 spanning-tree portfastend.

View 1 Replies View Related

Terminate Split Cat 5 For Data And Voice At Patch Panel End?

May 24, 2011

How do i terminate a split cat5 for data and voice at the patch panel end?

View 3 Replies View Related

Cisco Firewall :: ASA 5510 - Data Center Move / IP Address Change

Nov 4, 2012

We will be moving to a new data center in the very near future and with them our WAN IP addresses will be changing. Any best course of action for changing the IP addresses throughout the firewall configuration? Would it be possible/suggested to export the running-config, make the neccessary changes, then import the config? I am familiar with the ASA 5510 only so far as changes are required. It is not something I work with on a regular basis.

View 5 Replies View Related

Cisco Firewall :: ASA 5510 - VPN Is Up But Network Traffic / Data Transfer Is Not Happening

May 2, 2013

we have ASA 5510 Configured. this is regarding site-to-site VPN.

View 1 Replies View Related

Cisco Switching/Routing :: EX90 Voice And DATA VLAN On A Switch

Jun 4, 2013

If we configure a Voice and Data VLAn on a switch. And connect EX90 on voice VLAN and PCwith EX90 terminals. Than can we able to share a presentation or data with EX90 or not?

View 3 Replies View Related

Cisco Switching/Routing :: Data And Voice VLANs Communication 1921

Dec 11, 2012

I wanted to know about EHWIC 8-Port configuration?  We create  Data and Voice VLANs and assign 8 ports to the VLANs. So how do VLANS communicate with each other? We cannot make Gi0/1 as sub interfaces and assign the same subnet IP’s as of VLAN IP’s , it wont accept. On 1921 router Assume Gi0/0 we connect to MPLS WAN. What happens to Gi0/1 where do we connect this?

View 1 Replies View Related

Cisco Switching/Routing :: HP 1810 / SG 300-28P - Voice And Data All Reside On Same VLan

May 16, 2013

im working in a new enviroment and want to makes some design changes to the environment. I wanted to bounce my ideas some of you folks to see if my thinking is on the right path or maybe i could do things better.
 
Setup:
 
Currently the setup that i manage includes and Sonic Wall (also dishes out dhcp), HP 1810 "Core Switch" and 3 SG 300-28P cisco managed switches. (all cisco switches tie back into the HP) The router is managed by the isp. There is only one vlan with all traffic going across it.
 
Obviously the glaring issue here is that voice and data all reside on the same vlan. Correct me if i am thinking incorrectly but the first step would be to create a separate vlan for the phones with its own IP scheme. currently phones are issued addresses from the 150-200 range and everything else is left for pc's, printers etc. To my knowledge the HP switch does layer 3 but i do not know much about it. There are vpn tunnels to remote offices that are used for sharepoint, email and to access other services. Trying to wrap my mind around the environment as a whole so i may be missing something obvious i could do design wise to improve.

View 2 Replies View Related

Cisco Switching/Routing :: Configure Router 2811 For Data And Voice Network

May 24, 2012

I have to configure router 2811 for Data and Voice network.However I have only one Fast Ethernet interface. [code]
 
what else do I need to configure on switchport on which Avaya phones are connected.And is there any extra command, i need to configure on the router and 2950 switch.

View 4 Replies View Related

Cisco Switches :: SG200 To SG300 - Setup VLAN1 For Data And VLAN10 For Voice

Apr 8, 2013

I have a customer with several SG300's providing VLAN1 for data and VLAN10 for voice. The PC's are piggy backing off the phones and showing up in the SG300 fine:
 
One department has recently employed more people so we have an SG200 switch to connect the computers and phones to. I don't seem to be able to get any connectivity between the new switch and the SG300 it is connecting to. I have setup VLAN1 and 10 as per the images below:

View 4 Replies View Related

Cisco Switching/Routing :: Sge2000p / Uc520 - All Data Traffic Passing OK But Voice Will Not Work

Aug 27, 2012

I have a sge2000p to install with a uc520. I have all data traffic passing ok but voice will not work. Phones to not get ip etc.

View 4 Replies View Related

Cisco Switching/Routing :: Use 861 Ethernet Router To Link LANs Data And Voice Segments Together?

Feb 5, 2013

We want to use a Cisco 861 Ethernet router to link our LAN's data and voice segments together (each on separate switches). Our switches are not Layer3 so routing over them is not an option. We only use the default VLAN1 on both switches.There is a data segment 192.168.1.0/24 and a voice segment 192.168.150.0/24, each with it's own internet/WAN access (internet for the data lan and SIP provider for the voice lan).

Diagram:

internet-~--router_192.168.1.1------192.168.1.0/24_data_lan--------192.168.1.254_cisco861_192.168.150.254-----192.168.150.0/24_voice------192.168.150.1_router--~-sip_provider

This is want i want to achieve:

- Link the data and voice switches using the  861

- I want to make the Cisco 861 the default gw on both segments, but they should only route traffic destined for the other segment to each other and route all other traffic to their segment's designated internet connection. I don't want the Cisco to do any NATting and there's no need for firewalling either.

View 3 Replies View Related

Cisco WAN :: 3845 - Correct To State That VWIC2-2MFT-T1/E1 Can Support Data In Addition To Voice

May 10, 2013

I have a 3845 edge router connected to the Internet via four T1s and a HWIC-4T1/E1 card. We are adding two more T1s to the mix, and I have a VWIC2-2MFT-T1/E1 card. Here are my questions:
 
1. Is it correct to state that the VWIC2-2MFT-T1/E1 can support data in addition to voice?

2. I can use the HWIC and VWIC cards together to utilize the 6 T1s together?

3. Do I just add the card, configure the new slot, and add it to the same channel group?
 
Below is the current config regarding the existing card HWIC:
 
card type t1 0 0
security authentication failure rate 3 log
security passwords min-length 6
logging message-counter syslog
logging buffered 51200

[code]...

View 1 Replies View Related

Cisco Wireless :: Users Supports 2600 Series AP Air Voice / Video / Data Average Any Document Or Link

Apr 9, 2013

how many users supports the 2600 series ap air voice, video, and data average any document or link

View 3 Replies View Related

4100E / Send Data On Multiple Interfaces?

Nov 21, 2012

I have a virtualization server with 4 network interfaces and connected it to a SAN. There are few virtual machines which writes data to the SAN.

I want to connect to the SAN with multiple interfaces to speed up the network.

Is it possible to send data on multiple interfaces? How can I configure it?

Computers are connected to san through switch.
SAN: Equallogic PS 4100 E
Switch: Dell Power Connect
Computer: Dell T610
OS: Centos 5
Virtualization: Kvm
NIC: 8

I am not sure about network card brand now.

View 1 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved