Professional Documents
Culture Documents
Exampl1 - Configuration of Asa Firewall
Exampl1 - Configuration of Asa Firewall
Platform ASA5505
Boot in 9 seconds
Boot in 8 seconds
Boot in 7 seconds
Boot in 6 seconds
Boot in 5 seconds
Boot in 4 seconds
Boot in 3 seconds
Boot in 2 seconds
Boot in 1 second
Launching BootLoader...
Default configuration file contains 1 entry.
Loading...
IO memory blocks requested from bigphys 32bit: 9672
dosfsck 2.11, 12 Mar 2005, FAT32, LFN
Starting check/repair pass.
Starting verification pass.
/dev/hda1: 152 files, 35584/62780 clusters
dosfsck(/dev/hda1) returned 0
Processor memory 348127232, Reserved memory: 62914560
****************************** Warning
*******************************
This product contains cryptographic features and is
subject to United States and local country laws
governing, import, export, transfer, and use.
Delivery of Cisco cryptographic products does not
imply third-party authority to import, export,
distribute, or use encryption. Importers, exporters,
distributors and users are responsible for compliance
with U.S. and local country laws. By using this
product you agree to comply with applicable laws and
regulations. If you are unable to comply with U.S.
and local laws, return the enclosed items immediately.
: Saved
:
ASA Version 8.4(2)
!
hostname ciscoasa
names
!
Vlan 2Port0
!
<--- More --->
interface Vlan1
nameif inside
security-level 100 [ Interface Vlan1Comes with a security mode of
100]
telnet timeout 5
ssh timeout 5
!
dhcpd address 192.168.1.5-192.168.1.35 inside
dhcpd enable inside
!
dhcpd auto_config outside
!
!
ciscoasa#
ciscoasa#conf t
ciscoasa(config)#interface vlan2
ciscoasa(config-if)#no ip add dhcp
Step_2
ciscoasa(config-if)#
[now go ahead and give the ip address to the server located to the right]
ciscoasa(config-if)#
ciscoasa(config-network-object)#SUBnet 192.168.1.0 ?
ciscoasa(config-network-object)#SUBnet 192.168.1.0 ?
network-object mode commands/options:
A.B.C.D Enter an IPv4 network mask
ciscoasa(config-network-object)#SUBnet 192.168.1.0 255.255.255.0
[ Conf the firewall by nat and dynamic interface both sides as below ]