How to setup a basic firewall using ASA?

I was tasked to setup a basic firewall on Cisco ASA 5506. A basic firewall that connects to the router, 2 interfaces - 1 ext and 1 int, and with the NAT function. BTW, how to start to set it up  after taking it out from the box. Please show step-by-step.

Thanks in advance.
LVL 1
MichaelBalackAsked:
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

x
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Mohammed KhawajaManager - Infrastructure:  Information TechnologyCommented:
You are provided a console cable which you will use to connect the ASA to your PC's serial port.  Use a terminal emulation software and you have access to the ASA's console.  If you have never configured a firewall then I suggest you get some professional to help you with.  When you say basic setup, what do you mean?  A basic setup for some is to block all and allow HTTP and HTTPS whereas for some it could be as per below:

1.  Allow ICMP for ping traffic
2.  Allow SMTP to your provider
3.  Allow access to FTP and FTPS sites
4.  Allow users to user Outlook and connect to services such as Outlook.com, etc.
5.  Etc, etc, etc.

Identify your requirements and strongly suggest to get someone with experience to configure it for you.
0
MichaelBalackAuthor Commented:
Hi Mohammed,

Thanks for your suggestions.
0
MichaelBalackAuthor Commented:
Hi experts,

A basic firewall with NAT will do. If i am not wrong, using console with commands is able will do. I personally know how to setup firewall, such as, fortigate,  juniper, sonicwall.

However, i set them up in gui, and i am very poor in commands. Appreciate for any help.
0
Big Business Goals? Which KPIs Will Help You

The most successful MSPs rely on metrics – known as key performance indicators (KPIs) – for making informed decisions that help their businesses thrive, rather than just survive. This eBook provides an overview of the most important KPIs used by top MSPs.

Mohammed KhawajaManager - Infrastructure:  Information TechnologyCommented:
With 5500 series devices, there is GUI for configuring the appliance.  Refer to link below and I believe it is supported as of version 6.3 of the firewall OS:

http://www.cisco.com/c/en/us/td/docs/security/asa/asa83/asdm63/configuration_guide/config.html
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
MichaelBalackAuthor Commented:
Hi Mohammed,

Thanks for the article, give me some time to go through it.
0
Pete LongTechnical ConsultantCommented:
I wrote this for the 5505 but the procedure is pretty much the same
Cisco ASA5505 Setup (Via ASDM)
0
MichaelBalackAuthor Commented:
Very much appreciate the articles introduced.

Expert 1 - Mohammed Khawaja provide the full and lengthy ASA setup plus some other more in-depth configuration. Although those in-depth ones may not needed at this moment, but, is a good references/guidance that may need at time to come.

Expert 2 - PeteLong provide an easy-to-understanding and straightforward article to get the ASA operational with basic firewalling features. Almost all of the settings are needed.
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Cisco

From novice to tech pro — start learning today.