Re: [fw-wiz] Odd Cisco ASA question. . .



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

The ASA can do that, but I've done it more with van's. It would be helpfully if you could give a bit more detail on your
layout and what exactly you are looking at. Also Logs could help quite a bit.



lordchariot@xxxxxxxxxxxxxx wrote:
Problem is, it appears a LOT of my filtering is over a single interface.
Don't understand. What does this mean? Are you seeing inbound traffic going
back out through the same interface?
KS1500s could handle that with ease (although not recommended), don't know
about the ASA.

-----Original Message-----
From: firewall-wizards-bounces@xxxxxxxxxxxxxxxxxxxxx
[mailto:firewall-wizards-bounces@xxxxxxxxxxxxxxxxxxxxx] On Behalf Of Keith
A. Glass
Sent: Friday, June 08, 2007 6:10 PM
To: firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
Subject: [fw-wiz] Odd Cisco ASA question. . .

Here's my situation: I'm having to replace several old Cyberguard KS-1500s
with new Cisco ASA 5500's. Problem is, it appears a LOT of my filtering is
over a single interface.

It doesn't help that we're on an entirely private network, and subnets have
been added willy-nilly.

And re-organizing the network is NOT a player.

Suggestions ? Other than "Down, not across", that is. . . .



_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards

_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.4 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFGbv2Wv8bO71D0xskRAsW2AKC67oZTJgyrn2sF+NO4wbwVDWqIZwCdFkyv
+lcgnM2XQbUzS66YMwERs88=
=0TGD
-----END PGP SIGNATURE-----
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards