Solved

CISCO ASA 5510

Posted on 2013-02-07
5
558 Views
Last Modified: 2013-02-08
In our data center i have a SRX 5308 Netgear router. This router is the main hub in a vpn hub and spoke set up. I also have a few servers that are connected to this router. We are putting in a CISCO ASA 5510 router with SSL VPN any connect. How can i have both router running together and people VPN to cisco and access the servers on the netgear router?
0
Comment
Question by:kajumblies
  • 3
  • 2
5 Comments
 
LVL 5

Expert Comment

by:Leeeee
ID: 38865168
To reiterate your question, you still want the Netgear to handle site-to-site VPN termination and you the ASA to terminate SSL VPN sessions?
0
 

Author Comment

by:kajumblies
ID: 38865238
correct
0
 
LVL 5

Expert Comment

by:Leeeee
ID: 38865807
If you have a range of public IP's, simply assign the outside interface of the 5510 a public IP and configure SSL VPN as normal. As long as the Netgear knows how to route to the ASA, it's straightforward design. Make sure port 443 is allowed through the Netgear outside ACL. Make sure the ASA has static routes to subnets that you want users to be able to access IE server subnet etc.
0
 

Author Comment

by:kajumblies
ID: 38866054
1. Do i need to configure static routes on both netgear and cisco or just cisco?
2. How would i set this up on both sides to make the above work?
0
 
LVL 5

Accepted Solution

by:
Leeeee earned 500 total points
ID: 38866162
Are you PAT'ing everything on the SRX or do you have a few public IP's you can use?

ASA needs to know how to get outside, so a default route to the SRX is needed. Potentially a static route to the server network as well if that network is being routed on a core switch/something other than the SRX etc.

The SRX would need a route to the ASA if the ASA is on a different segment than the SRX.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Network ports are the threads that hold network communication together. They are an essential part of networking that can be easily ignore or misunderstood, my goals is to show those who don't have a strong network foundation how network ports opera…
This past year has been one of great growth and performance for OnPage. We have added many features and integrations to the product, making 2016 an awesome year. We see these steps forward as the basis for future growth.
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

821 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question