Cisco 5525 with outside Internet (Design)

I have a question of design:

Currently, we run to the internet connection of the provider to the heart of our network (via Vlan99). Then it must be connected to our firewall via vlan 99...

This is the flow:

ISP provider
Stack of switch port G1/0/25 switchport access vlan 99
Firewall connected to our Switch stack via the trunk (trunk allowed vlan 99)
G0/7 IP subnet x.x.x.x-x.x.x.x interface logical Vlan99 Type of firewall.

Our Firewall (Cisco ASA5525), has a configuration interface for the connection (Vlan99), with a name on the outside and our external IP address. (Logical Type interface).

I would like to move our base for firewall connection, (I don't want the internet to run firstly through the switch, then the firewall).

Would it not prudent to say that I could physically move the connection to the firewall and that is all? The firewall has a route outside 0.0.0.0 0.0.0.0 with our Interface of G0/7 firewall gateway.

Or is it more that meet the eye?

Sorry for the noob question, but I want to understand a little better and my feeling says that pass the core to the firewall connection would be sufficient, but then again im no expert at the firewall much.

Thank you...

Yes, it's true.

Your default switch in the route based on through the firewall inside the interface. No change in this regard.

The firewall applies security policy and performs NAT network of public IP address space.

The Firewall default route on the ISP interface in front of you. Don't change there either.

As I have noted, if your firewall configuration interface has currently investigating a vlan that will no longer be necessary since you will not have a trunk port with VLAN tagging.

Tags: Cisco Security

Similar Questions

  • LT2P configuration vpn cisco asa with the internet machine windows/mac issue

    Dear all,

    I have properly configured configuration vpn L2TP on asa 5510 with 8.0 (4) version of IOS.

    My internet does not work when I connect using the vpn. Even if I give power of attorney or dns or I remove the proxy

    It does not work. only the resources behind the firewall, I can access. I use the extended access list

    I tried also with the standard access list.

    Please please suggest what error might be.

    Thank you

    JV

    Split for L2TP over IPSec tunnel tunnel is not configured on the head end (ASA), it must be configured on the client itself, in accordance with the following Microsoft article:

    http://TechNet.Microsoft.com/en-us/library/bb878117.aspx

  • Jabber "work' from the outside (internet) don't"work"well internally.

    Hi all

    I had problems with my jabber,

    in my case, I just use the local DNS server for internal jabber client and use host etc. for external jabber client in the laptop.

    Logon and the intercom call jabber works fine, , but I can not connect use jabber from outside (internet).

    There is no firewall in my LAB topology,

    just:

    -> MCU 5310

    public-> router-> switch-> VCS-E (static NAT 1:1)

    -> VCS - C

    -> TMS

    VCS-E use single NIC and it using a NAT 1:1 to the public.

    and here's a screenshot of my VCS E DNS and VCS - C research.

    Please advise...

    Thank you

    Ovindo

    Hello!

    In short, if you use the 1:1 NAT it is mandatory to have the 'dual interface option', even if you only

    use an interface, but allows a field set the external nat IP.

    Also all communications to this interface must go to the external ip address.

    You want to use the records SRV records in addition has if this area must be accessible.

    Learn about deployment guides, including:

    http://www.Cisco.com/en/us/docs/Telepresence/infrastructure/VCs/config_guide/Cisco_VCS_Basic_Configuration_Control_with_Expressway_Deployment_Guide_X7-2.PDF

    In addition, there are several assignments similar issues here in the forum, please use the search or google.

    Please remember useful frequency responses and identify useful or correct answers.

  • Impossible to get Safari to work with BT Internet email

    I can not Safari to work with BT Internet email. Whenever I try to connect to my email account it comes with just a blank page.

    It works very well with Firefox, but I would prefer to use Safari.

    I disabled all extensions Safari and made sure the cache has been clear. I spent ages on the phone to BT this morning, but the question certainly seems to be with Safari.

    Am I alone with this problem?

    Just answered my own question. BT obviously don't like users using private browsing. It was the only thing I never thought

  • Firefox is configured as the default browser, but if I click on a link in MS Word, the link opens with MS Internet Explore. Why?

    Firefox is configured as the default browser, but if I click on a link in MS Word, the link opens with MS Internet Explore. Why?

    I have the same problem, but the difference is in the opening of the MS WORD hyperlinks to download documents (for example http://ntv.spbstu.ru/2011/hss_2011_3.pdf#page=145 ). This link wants to call MS IE.
    At the same time, all the HTML links are opened in FireFox.

  • SERIOUS HELP NEEDED: How to prevent an application to communicate with the internet?

    Hey guys, I use an application called VLCStreamer on my iPad and I just want to know how I can help but communicate with the internet. For example, I don't want VLCStreamer to be contacting the author of the application.

    Thanks for any help!

    Put your iPad in airplane mode.

  • TOSHIBA ConfigFree is screwing with my internet

    I've never had a serious problem with my Toshiba laptop before and now I need a little help.

    For some reason yesterday morning, Toshiba ConfigFree started running for no reason at all. I have never used the app before and never had need of. Since then, my internet connection has slowed to a crawl. It's almost as bad a 56 K connection. Any ideas?

    I'm sorry I can't give precise information, but with my internet connection being down, I am forced to use a public computer. Thanks in advance.

    Hello

    Your best bet is to just uninstall. I found that it is a useless application; It only tells you that what your OS tells you so there is no real need of it. When uninstalled your connection will be managed by your operating system and that there should be no other problems.

    E.g.

  • Satellite P100-275: with cable-> internet. On battery-> no internet

    Hello

    I have a Toshiba P100-275 for 2 weeks, but I have a problem with the internet.
    When I plugged the power cable, I have internet but when I'm working on the battery, I have no internet.
    Everything falls like MSN, GMAIL etc.
    I thought it had something to do with the mastery of energy, but I can't find the place where.
    Someone at - it an idea?

    Thank you
    Bianca.

    Hello

    How do you connect to the internet? Were you using LAN or WLan?
    And what do you mean that you have no internet? You do not have access to the router/modem or what?

    PS: The modes of different power, that you can set in the window power options.

  • Satellite U500 freezes with USB internet connection

    I have a portable Satellite U500 bought in Australia and I have a problem that when I connect to my mobile internet it freezes.

    I tried two different mobile internet providers thinking that maybe it's a problem with them, but both are the issue. I tried to put in different UBS ports (as there are three of them) and it freezes again any port. Via USB thumb drives in one of them or connection USB keyboard/mouse does not cause a problem, so I don't think that it can be USB ports.

    When I connect to internet via LAN to work I have no problem. I scanned my computer from viruses and its own. Frost occurs with mobile internet USB only and has only started in the last two or three months, I've had the laptop since December, running Vista.

    Help? Does anyone else have this problem?

    Which vendors you've tried?

  • Having trouble with my internet connection through wifi. N600 router is what I think.

    I had some problems with my internet connection recently via my wireless router. I get the little triangle yellow and with the connection at different times and I can't call my local internet provider because it still works when they are open, and then it closes when they are closed. I recently bought a Google Chromecast and some think it might interfere with the connection, but I don't see how. When I reset the modem router and cable by unplugging and plug their return they sometimes get the rear connection but it's annoying not knowing when it will go off again, then come back. A few months before the connection out sometimes but not several times a day. If you need additional information such as the type IP DNS stuff I can get it. Also recently I have updated the firmware of the Netgear if that makes a difference. Thank you!

    Thanks to all who responded. I talked to my ISP and discovered that the modem was abandon the connection because he was old and he sold me a new and things work fine now. Thanks again!

  • Problems with the internet connection, Aspire V15 - V3 - 575G

    Hi, I bought a new laptop and have problems with the internet connection without having to install other programs.

    The problems are the following:

    • I use an ethernet cable to connect and just after passing on the laptop, there is no Internet connection at all. I have to restart the router to do.
    • When downloading or uploading brokes down at intervals of 30 seconds - 1 minute. It is not always the same. Sometimes it works 3 minutes, but it is not enough.

    He has Win10... With my old laptop with Win7, I had no such problems. I do not change ISP.

    I don't know what to do to fix it. I have not tried to uninstall Acer applications yet. Have you experienced something similar?

    Thank you very much for the reply.

    Plese try this:

    device, right-click on your network card Realtek Manager choose uninstall and tick to uninstall the software if requested, restart, and then try again to install the downloaded driver.

  • Unable to connect to the internet using my cable broadband from sky. He said that there is a problem with your internet connection.

    original title: connection to the sky

    Hi I have a dell Inspiron mini and when I put my sky broadband cable said inside connected to the internet, but when I opened a page it says there is a problem with your internet or something.i have also the wireless network connection, but I think one of my kids messed with the parameter as , I can't use the wireless setting now.so if anyone has any answers I would be grateful.

    Hi Kerry,

    I would recommend contacting Sky support with their internet service:
    One thing, you can try on your own is following the instructions in this Microsoft article and running the Fixit tool:
    I hope this helps.
  • I installed AVG 9.0 and now I get the following MSN Explorer pop up of message.__You are unable to connect to your e-mail server. There may be a problem with your Internet connection, or a problem with the mail server. Pleas try again.

    I installed AVG 9.0 and now I get the MSN Explorer pop next message.
    You can not connect to your mail server. There may be a problem with your Internet connection, or a problem with the mail server. Pleas try again.

    Sure.  Analysis of your e-mail anti-virus program:

    • Can slow to receive and send messages, or even fail.
    • Can damage files of storage for messages that you've already sent and received, making it inaccessible messages.
    • Is not necessary.  If you receive an infected attachment and try to open it, the protective device in real time of your antivirus program will block the infection.

    Here are a few web pages accurately:

    Why you don't need your anti-virus program to scan your e-mail
    The other threat email: the Corruption of files in Outlook Express
    Why some antivirus software can change the settings in e-mail programs
    Email scanning - advantages and disadvantages

  • Almost every program I try to run asks me what program I want to open it with. Internet Explorer files using a calculator.

    So yes, as the title says, I can't any program to be run, I can't even look at my system to try to update the driver. I tried to download some programs to solve this problem of diver updates to the registry scan fix everything on the windows site and I'll try to run the program, but still he asks me what I want to open the program with. Internet Explorer is just about the only program I can get it to work. I can't even program my system restore to run, that asking too me to choose a program I want to open the file with. I don't know what to do. I was able to run my Norton Virus scans, analyses of registry, anything and everything that Norton 360 can do, I did it and nothing works. So please if you have any solution send them my way!

    So yes, I could find a site that fixed my problems that it was. http://www.dougknox.com/XP/file_assoc.htm

    so if someone else is having the same problems I was, go to this link and find the fix .exe and BOOM you guessed it.

  • You can run Microsoft Security Essentials along the coast with Verizon internet suite? Or will they be in conflict?

    You can run Microsoft Security Essentials along the coast with Verizon internet suite? Or will they come into conflict.

    Hello

    You should be able to use the free version of Prevx with Verizon and Firefox.
    You may need to stop the function of safe online but you can try it. If it is
    are problems collate Prevx, Verizon and the Support of FireFox.

    Verizon Internet Security is just McAfee re-packaged.

Maybe you are looking for