ASA for internet edge and internal zones

Hi,
Has anyone used a pair of ASA 5520s in HA to firewall the internet edge and to firewall traffic between internal security zones such as web and application layers? If so, is this best done using different security levels or contexts?
I'm thinking of using a routed context for securing the internet edge and then using seperate contexts for the web and application networks. Conexts will route via a L3 switch.
Thanks,

Thanks Varun
I will probably configure the ASA in routed single mode and use security levels between the different zones. There is only 1 ISP in this enviroment and I also need to support VPN termination on the internet edge.
In terms of sizing, the internet connection will be 300Mbps and the firewall throughput between zones needs to be above 500Mbps. I'm just thinking that the 5520 in active/standby will handle the internet bandwidth requirements but not the inter-zone requirements. Which model of ASA will be a good fit here?
Thank you.

Similar Messages

  • What is the process for connecting ethernet.  Have ethernet cable connected to stereo received for internet radio and Blue Ray. However Network System Preferences indicates ethernet not connected and has red dot to left.  Note Airport wireless is working.

    What is the process for connecting airport extreme ethernet?  I have ethernet cables connected to stereo receiver for internet radio and another to blue ray player.  The system preference network indicates "ethernet not connected" with red dot to left of this message.  The airport wireless works and has green dot to left of it.  The stereo receiver and blue ray player do not respond and give message not connect to internet.  Thank you.  /  cfpirate 

    It worked for me finally. I took out the DNS numbers in airport admin utility, and restarted the airport express. I do not remember putting the DNS numbers in, I wonder from where the airport express got those numbers.
    After restarting, it worked.
    Thanks!

  • Request for cookbook for internet sales and CRM middleware

    Hi
    can anybody send cookbook for internet sales and CRM middleware. Your response will be rewarded.
    please send to : [email protected]
    thanks and regards
    bhaskar

    Hi Bhaskar,
    I have sent you the required docs for Middlware and Internet Sales.
    <b>Reward points if it helps.</b>
    How to give points: Mark your thread as a question while creating it. In the answers you get, you can assign the points by clicking on the stars to the left.

  • Can I use Ethernet for Internet connection and Airport express for printer

    How / can I use Ethernet for Internet connection and use an airport express to set up wifi for printer and Apple TV?
    Macbook Pro. OS X 10.9.4

    I've never tried it, so I don't know what the results will be.
    However, you can move Ethernet to the top of the Services list in Network System Prefs which will cause it to be the Internet source. There is a command in the gear menu to set the Service order.  However, after thinking about it, if there isn't an internet connection via Wi-Fi, it might automatically drop down to the Ethernet connection.
    Then, you can set up your Wi-Fi so that it doesn't connect to the Internet, as Linc stated. How to do that would be dependent on the Router.

  • Nominal configuration for boot drive and internal RAID setup

    Hello, I'd appreciate some advice on the following please.
    I'm planning the build of a Mac Pro to act mainly as a photo editing workstation.
    Considering the following disc setup:
    Bay 1. 500GB with two partitions - 150GB for OS X and remaining for applications
    Bay 2. 250GB XP/Vista for occasional use. All Windows apps/data quarantined on this disk.
    Bays 3 and 4. 2x 500GB RAID0 (backed up externally) for data and workspace.
    WRT RAM, I've read that 4 matched DIMMs in the same riser is the optimal config, so looking at 4x 1GB.
    I'd be grateful for any comments as to whether I'm on the right track here.
    Thanks
    Ben
    Mac Pro   Mac OS X (10.4.10)  

    I set up a similar configuration for photo editing. First, partitions are not as useful as they were in the pre OS X era. Just load your OS and all applications on the same drive as there is no benefit, as far as I know, to separating them into partitions. Second, your 4 X 1GB RAM should be split between the two risers, not on the same riser. Put two DIMMs in the first two slots of each riser. 4 X 1GB hits a sweet spot in the cost/benefit analysis as long as you don't need more than 4GB. I use Lightroom extensively and 4GB is plenty.

  • HT1349 my wifes ipad has suddenly stopped searching for internet hubs and when trying to access our home hub it says unable to access ?

    My wifes ipad has suddenly stopped searrching for wifi connections and when our home hub is found it says unable to access ? It was working properly the other day ?

    Have you tried rebooting the Hub? Unplug it from power for about 30 seconds and plug it back in again.

  • Is it possible to be connected with a 3G modem for internet access and a WiFi router for printer sharing at the same time?

    For our only internet access we have a 3G wireless modem. I have since purchased a WiFi printer and router to connect all the comptuters to in the house. The PCs have no problem with using both the 3G connection and the WiFi signal at the same time to print, however, the MacBook Pro will not connect to the 3G network and the router, it will drop the internet access from the modem and attempt to connect via WiFi (which has no internet access). Is there a solution that is available to remedy this? I attempted to create an adhoc printer network, however, the macbooks again will not print off of this, only the PCs. And I'm getting a bit frustrated overall with this.

    The 3G wireless modem is on one of the PC's correct?
    Why don't you pass the Internet through the Ethernet port to the router via Cat5 cable, then have that transmit a Wifi signal that everything else can use, then connect the printer to the router for print sharing?
    You would have to turn off the wifi on the comptuer with the 3G modem as it's physically connected to the router and can't connect to the other machines as they are all connected to the router for sharing.
    The Mac has the ability to pass, Internet Sharing in the System Preferences.
    Do you have software for the Mac to run the 3G modem?

  • Your system is prompting me to give over my password for internet provider and checking this is on a ploy.Never had to do this before!

    Please tell me why I am now prompted to submit my password for my internet provider ? In the past with all the upgrades this has never been requested before and I wish to know if my computer has been compromised.

    I have no idea who "your system" is. Thunderbird is email client software that runs on your computer. When you get or send mail your email providers server asks for a password. You can enter this yourself or have Thunderbird remember the password and provide it for you.

  • Exporting for internet upload and email

    Hi,I have a 4minute clip which I want to export from final cut in 2 different versions.
    1. For emailing
    2. For uploading to internet (myspace,you tube etc...)
    Can anyone advice me on the best settings i can use?
    Thanks
    Danny

    Most email servers/hosts will have a 10mb limit on attachments. Four minutes squeezed down to 10mb ain't gonna be pretty.
    YouTube takes whatever you send them and automatically encodes it to Flash (with a 100mb limit).
    You're best bet would be to upload to an FTP server, then email a link to the site so that others can download it. That way you can keep it at a reasonable quality.
    -DH

  • User exit for order operation and internal assignment (SAPLCY18)

    Dear all,
    I am currently facing the problem below, which I have posted in PLM forum. However, I have been advised to ask in EAM forum, since probably my problem is more EAM-related.
    The problem currently facing is related to PM order operations. The customer's requirement is to use operations and to include the personnel numbers involved. For this solution, our proposal is to have the operations and within internal operation data to use the tab requirement assignments in order to include the personnel numbers. Also at this level, the client expects to maintain the the 'hr' (work requirements) for each personnel. For example there are used 2 personnel ids with hr requirements of 2hrs and 3 hrs respectively. Let me mention that in the operation screen, the hr requirements are initially defined equal to 1 hr.
    In the above case the message "The work of all the splits is greater than the work in the operation" apperas, since 1hr 5hrs. The question is if there is any way (user exit, badi) to update the work requirements in the operation with the sum of the internal assignment data.
    Program SAPLCY18 may be help, although I have not found the work around.
    More explanatory details to help:
    The combination using Work-Number of capacities-Duration and the Calculation key is already used, however the requirement is to use specific personnel numbers. SAP, as far as I am aware, allows you to define personnel numbers within internal operations.
    TAB Requirements assignements is available as long as in the operations main tab you have completed for the selected line the values Work-Number of capacities-Duration and Calculation key. Thus, in TAB Requirements assignments you can input the personnel numbers and the work of each one.
    The question is if we can use the Requirements Assignments TAB, using the button internal in the operations tab in order to define the personnels involveld and according to the work (hrs) to update the respective field of the operation (otherwise let's say to update the duration field for each personnel id and automatically the operation respective duration field to be updated).
    Your feedback is highly appreciated,
    thank you in advance,
    Bou.Lis

    PeteA,
    thank you for your response. I am actually looking for such a development solution (more-or-less I know that it is not possible using standard SAP customizing) but unfortunately I have not yet found such a user exit or BADI that could help solving the problem facing.
    Do you have any idea of such a development tool to use?
    Thansk and regards,
    Bou.Lis

  • TS1702 New IPhone4s using primarily for Internet overseas and FaceTime states it is waiting to activate need some help

    Need some help activating my face time on my new phone. Am overseas and not in phone range so trouble shooting is difficult

    I maybe completely off base (i don't have t-mobile) but it was my understanding that you would still need a 'data' plan for a) most of the applications to work and b) to receive service books etc and that the wi-fi would only give you access to 'website' and not the email etc.
    If the unit is rebooting, then it would be sign of a bad BB, I would recommend reinstalling the OS using the desktop manager but if you just got the unit and are still in the 15-30 day period (not sure how long t-mobile does a return) I would ask for a replacement unit.
    Again, not sure on the top part so hopefully someone else may have an answer for you.

  • I have a Verizon card for Internet service and am trying to set up my new iPad. During the setup iPad recognizes my wireless but can't connect.  Any suggestions?

    Updated product info .  Trying to set up Internet in new iPad using a Verizon wireless card.

    A wireless card won't help. For set up, you need to connect to a wireless router, or via cable to a computer running itunes.

  • Mail, FaceTime, Messages, ... all crash and preference panes for Internet Accounts and iCloud don't load

    Hi,
    I'm on a 27 inch iMac (end 2013) 3,5 Ghz i7. I've upgraded to Yosemite and everything worked... until today.
    When I try to launch Mail, Messages, FaceTime, Rapidweaver (and who knows what else): they all crash immediately with this message:
    Crashed Thread:        0  Dispatch queue: com.apple.main-thread
    Exception Type:        EXC_BAD_INSTRUCTION (SIGILL)
    Exception Codes:       0x0000000000000001, 0x0000000000000000
    I am the administrator of the iMac, there's a second user (account) that isn't affected (there, everything works). I have no idea what is happening since I haven't made significant changes to my iMac. Please help! I'm compleltely stuck here...
    Thanks,
    Steven

    Hi,
    ... since I haven't made significant changes to my iMac
    Tell us about the insignificant one then .
    Do these include turning Off any Fonts ?
    Adding any Fonts that might cause Conflicts ?
    The default Font most apps used to need was Helvetivca.
    it was used as the font for most window titles and other text items with the windows.
    For Messages we know that since Mavericks this has been AppleGothic.
    Use the Font Book app to check both (AppleGothic is well down the list).
    They should not have Duplicates, they should be Enabled and should Validate (File Menu).
    8:51 pm      Friday; November 14, 2014
    ​  iMac 2.5Ghz i5 2011 (Mavericks 10.9)
     G4/1GhzDual MDD (Leopard 10.5.8)
     MacBookPro 2Gb (Snow Leopard 10.6.8)
     Mac OS X (10.6.8),
     Couple of iPhones and an iPad

  • Hot synch cradle for visor edge and m 105 palm pilot...also leather case for m105

    If anyone is need of these items contact me at [email protected]
    Post relates to: Visor Edge

    Thanks for the reply!
    No, there is nothing to change the default city that I can see.  In fact, you can change very little in the way of defaults.  Time, date, date format, that's about it:-(
    Such is life:-)
    neil

  • Export - Import In ABAP ( for variables and internal table)

    how can we pass value for the variable and internal table using Export and Import?
    data: var type sy-uzeit.
    var = sy-uzeit.
    EXPORT var TO MEMORY ID 'TIME'.
    data: var type sy-uzeit.
    IMPORT var FROM MEMORY ID 'TIME'.
    write:/ var,sy-subrc,sy-uzeit.
    i found var value 0 while importing. 
    what is the right syntax for passing value of variable and internaltable.
    regards,
    dushyant.

    Hi,
    There are two possible solutions.
    Solution1:
    Program1.Should be run before atleast once so that TIME should be filled.
    data: var type sy-uzeit.
    var = sy-uzeit.
    EXPORT var TO MEMORY ID 'TIME'.
    Program2.IF the TIME is filled,then only it will produce the result.
    data: var type sy-uzeit.
    clear var.
    IMPORT var FROM MEMORY ID 'TIME'.
    write:/ var, sy-subrc, sy-uzeit.
    Solution2:
    Single program:
    data: var type sy-uzeit.
    var = sy-uzeit.
    EXPORT var TO MEMORY ID 'TIME'.
    clear var.
    IMPORT var FROM MEMORY ID 'TIME'.
    write:/ var, sy-subrc, sy-uzeit.
    Kindly reward points by clikcing the star on the left of reply,if it helps.

Maybe you are looking for

  • Auto Installation of a Print Driver from the Server?

    Hi all, I hope this is the correct forum for this question. I am fairly new at setting up Mac Servers and was looking for some advice. I am trying to set up a Mac 10.6 Server as a print server. I am familiar with setting up printing services on W2k3

  • My hp deskjet 3054 says its not online whn i try to print but it is connected to my network

    my hp deskjet 3054 is conncected to my network and says "congratulations on the successful setup of your wirless printer" when i print my wireless network test report from the print itself but when i try to print form my mac i get a message saying pr

  • Working with Layers | Learn Photoshop Elements 9 | Adobe TV

    With layers, you can work nondestructively and save all of your creative ideas in a single file. Learn about the various options in the Layers panel and how to harness the true power of Photoshop Elements by working with layers. http://adobe.ly/ynakt

  • Can't download any file

    Hai iam using iPhone 5 and I can't download any file even a text please help me

  • Smartform function module

    HI,   is it same development client smartform function module (meane when we execute the smartform) and test client smartform function module?pls help me? regrds, dhanan