Link to home
Start Free TrialLog in
Avatar of Silencer001
Silencer001Flag for Belgium

asked on

Cisco ASA 5505 remote management

Hi everyone,

I want to access my Cisco ASA 5505 remotely from the internet. So just administer the device without having the need to connect to a server on premises and then access the cisco with the address 192.168.2.1 for example. I want to use 99.99.99.99:20000 for example where 99.99.99.99 is the public IP of the customer.

I have found this guide http://www.techrepublic.com/blog/networking/eight-easy-steps-to-cisco-asa-remote-access-setup/1201 but I think this is the set-up vpn on the cisco?
I would also like to use the GUI for this to see which commands are linked to it and learn both.

Thanks in advance!!
SOLUTION
Avatar of Istvan Kalmar
Istvan Kalmar
Flag of Hungary image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Silencer001

ASKER

Ahhh ok now I see. So I use my webbrowser to connect to the Cisco ASA and gain VPN access (DHCP assigns myself a fixed IP and management is allowed from this IP-address.

But then when I am inside of the network, I also need to have this IP address to have access to the router? I don't have a management PC so use my own laptop our rdp to a server and gain access from there...

Is it secure to just allow access internally for the whole range?
Guess that depends on how much you trust your coworkers ;) You still have a protected SSL connection to the admin interface, with username/password, so it's not like everybody can just connect to the firewall and mess it up ... plus, with physical access, a specific IP address isn't really that much protection either ...
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial