Solved

Cisco Asa Multiple Customers

Posted on 2014-10-29
1
199 Views
Last Modified: 2015-01-12
Hello,

We have a cisco asa 5505.   I just learned that we need to provide internet service to a second party that wants to host their own firewall in a remote location .  The remote location I have several fiber runs to.  Since all our external ips come into the asa, Im going to assign a port on our 5505 to our vlan associated with our ISP.  From there Im going to give the second company a /21 block.

My concern is they would also like to keep equipment in our location on their local lan.  So off our asa I will connect to a switch (layer 3 I believe)  that switch will fiber connect to the second parties switch.  the second party will plug in their sonicwall to the remote switch.  In order to have local equipment in the same location as the asa Im guessing they have to create a vlan on the local and remote switch and sonicwall?
0
Comment
Question by:silvercas
1 Comment
 
LVL 61

Accepted Solution

by:
gheist earned 500 total points
ID: 40412858
/21 is very generous
Double the number of people should suffice ofr all the needs.
You can make virtual firewall in ASA and hand over management to them. It is very handy for customer to have control over other end of link
0

Featured Post

Free camera licenses with purchase of My Cloud NAS

Milestone Arcus software is compatible with thousands of industry-leading cameras for added flexibility. Upon installation on your My Cloud NAS, you will receive two (2) camera licenses already enabled in the software. And for a limited time, get additional camera licenses FREE.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Layer 2 versus layer 3 10 41
Intrusion detection 20 54
Can't ping computer A from server or local PC - but computer A can ping Server 3 48
Unifi AP 4 44
Short answer to this question: there is no effective WiFi manager in iOS devices as seen in Windows WiFi or Macbook OSx WiFi management, but this article will try and provide some amicable solutions to better suite your needs.
If you're not part of the solution, you're part of the problem.   Tips on how to secure IoT devices, even the dumbest ones, so they can't be used as part of a DDoS botnet.  Use PRTG Network Monitor as one of the building blocks, to detect unusual…
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

947 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now