troubleshooting Question

General Cisco ASA 5505 / network configuration questions.

Avatar of kevincasey
kevincasey asked on
VPNSoftware FirewallsHardware Firewalls
8 Comments2 Solutions2949 ViewsLast Modified:
I have a few conceptual questions about the Cisco ASA 5505.  I'm not asking any specific configuration questions yet, those will be in another question with more points.

My agency recently acquired three (3) of the ASA 5505 Security Plus bundles.  We are looking to use one as a firewall behind our SDSL modem.  In the future we would like to use the other two devices at remote locations to connect securely back to our main location.  Each remote location has between one and five concurrent users.

Question 1) Do we need to deploy the security plus bundles at every location?  Or can we get away something like the 10-user bundle at the remote locations (for half the price) and the security plus bundle at our main office?

Question 2a) Are there significant advantages to using the DMZ functionality included in the security plus bundle?  Currently, the only services we expose are our Exchange server (including RPC and OWA) and our spam firewall, for which the traffic is currently being routed through our modem using simple port-forwarding.
Question 2b) Our ISP has given us a small handful of IP addresses.  Should we move our spam filter and Exchange server to the public address space and use the NAT functionality instead of the PAT functionality of the ASA 5505?

Question 3) We have a handful of laptops that users take home to do work in a very disconnected fashion.  They log into an account local to the laptop and save their work to a flash drive.  Is it possible, with just the ASA 5505 to setup the laptops so that they connect securely back into our network and provide access to our internal resources?  If not, what additional software/hardware do we need?

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Join our community to see this answer!
Unlock 2 Answers and 8 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 2 Answers and 8 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros