Solved

Zone based Firewall configuration in ASA 5510 and  5520

Posted on 2011-09-07
3
1,691 Views
Last Modified: 2012-06-27
Hi,

What is Zone based Firewall configuration  
what is the difference between inside/outside/DMZ based and Zone based configuration.
Is there a Steps to configure Zone based configuration in ASA firewall
Will PIX 515E supports Zone based firewall configuraion

Regards
ramu
0
Comment
Question by:RAMU CH
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 35

Expert Comment

by:Ernie Beek
ID: 36501149
Afaik zone based firewalling is a feature in IOS. Something like the security (plus) version.
Asa's have their own software.
0
 
LVL 3

Accepted Solution

by:
Mystique_87 earned 500 total points
ID: 36501154
The zone based firewall one of the firewalls that can be configured on a Cisco router.

You would not be able to configure Zone based firewall on the ASA/PIX. You can however configure the different interfaces of the firewall as having different security levels. The interface with the higher security level is more secure than the interface with a lower security level.

Here is a documetation on ZBF(Zone basede firewall):
http://www.cisco.com/en/US/products/ps6441/products_feature_guide09186a008060f6dd.html

The other firewall that can be configured on the router is CBAC(Context Based access control). You will find more information about it here:
http://www.cisco.com/en/US/products/sw/secursw/ps1018/products_tech_note09186a0080094e8b.shtml
0
 
LVL 1

Author Closing Comment

by:RAMU CH
ID: 36584953
Thanks
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

From Cisco ASA version 8.3, the Network Address Translation (NAT) configuration has been completely redesigned and it may be helpful to have the syntax configuration for both at a glance. You may as well want to read official Cisco published AS…
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…
Suggested Courses
Course of the Month10 days, 4 hours left to enroll

623 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question