Instruction/ maintenance manual of the product ASASSMCSC10K9 Cisco Systems
Go to page of 14
Q UICK S TART G UIDE Cisco ASA Services Module 1 Information About the ASA Servi ces M odule in the Switch Network 2 Verifying the Module Installation 3 Assigning VLANs to the ASA Services Module 4 Us.
2 Updated: May 15, 2013, 78-19998-02 1 Information About the ASA Services Module in the Switch Network For switch and software compatibility with the ASA Services M odule (ASASM), see the following: http://www.cisco.com/en/US/docs/securi ty/asa/compatibility/asamatrx.
3 For multiple context mode, if you place the MSFC or router behind the ASASM, you should only connect it to a single context. If you connect it to multiple con texts, the MSFC/router will route between the contexts, which might not be your intentio n.
4 2 Verifying the Module Installation Verify that the switch acknowledge s the ASASM and has bro ught it onli ne. (If you n eed to install your ASASM, see the module installation guide on Cisco.
5 4 Using the MSFC as a Directly-Connected Router If you want to use the MSFC as a directly -connected router (for ex ample, as the default gateway connected to the ASASM outside interface), then add an ASASM VLAN interface to the MSFC as a switched virtual interface (SVI).
6 5 Logging Into the ASA Services Module From the switch CLI, you can connect to a virtual console session on the A SASM: Command Purpose Step 1 service-module session [ switch { 1 | 2 }] slot number Example: Router# service-module session slot 4 hostname> Connects to the ASASM.
7 Logging Out of the ASA Services Module If you do not log ou t of the ASASM, the console conn ection persists; there is no timeout. To end t he ASASM console session and access the switc h CLI, perform the follow ing steps. To kill another user’s active connecti on, which may have been unintentionally l eft open, see the configuration guide.
8 Step 2 Do one of the following to configure a manag ement interface, depending on you r mode: Routed mode: interface vlan number ip address ip_address [ mask ] nameif name security-level level Example: hostname(config)# interface vlan 1 hostname(config-if)# ip address 192.
9 Step 4 http server enable Example: hostname(config)# http server enable Enables the HTTP server for ASDM. Step 5 http ip_address mask interface_name Example: hostname(config)# http 192.168.1.0 255.255.255.0 inside Allows the management host to access ASDM.
10 7 Launching ASDM Using ASDM, you can use wizards to configure basic and advanced features. ASDM is a graphical user interface that allows you to manage the A SAS M from any lo cation by using a web browser. See the ASDM release notes on Cisco.co m for the requirements to run ASDM.
11 8 Running the Startup Wizard Run the Startup Wizard so that you can customize the security policy to suit your deployment. Using the startup wizard, you can set the following: Step 1 If the wizard is not already running, in the main ASDM window, choose Wizards > Sta rtup Wizard .
12 9 (Optional) Allowing Access to Public Servers Behind the ASA Services Module The Public Server pane automatically configures the security policy to make an inside server accessible from the Internet. As a business owner, you might have internal network services, such as a web and FTP server, that need to be available to an outside user.
13 10 (Optional) Running Other Wizards in ASDM You can optionally run the following additional wizards in ASDM: • High Availability and Scalability Wizard Configure active/active or active/standby failover, or VPN cluster loa d balancing. • Packet Capture Wizard Configure and run packet capture.
Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco trademarks, go to this URL: www.cisco .com/go/trademarks . Third-party trad emarks mentio ned are the p roperty of t heir respecti ve owners.
An important point after buying a device Cisco Systems ASASSMCSC10K9 (or even before the purchase) is to read its user manual. We should do this for several simple reasons:
If you have not bought Cisco Systems ASASSMCSC10K9 yet, this is a good time to familiarize yourself with the basic data on the product. First of all view first pages of the manual, you can find above. You should find there the most important technical data Cisco Systems ASASSMCSC10K9 - thus you can check whether the hardware meets your expectations. When delving into next pages of the user manual, Cisco Systems ASASSMCSC10K9 you will learn all the available features of the product, as well as information on its operation. The information that you get Cisco Systems ASASSMCSC10K9 will certainly help you make a decision on the purchase.
If you already are a holder of Cisco Systems ASASSMCSC10K9, but have not read the manual yet, you should do it for the reasons described above. You will learn then if you properly used the available features, and whether you have not made any mistakes, which can shorten the lifetime Cisco Systems ASASSMCSC10K9.
However, one of the most important roles played by the user manual is to help in solving problems with Cisco Systems ASASSMCSC10K9. Almost always you will find there Troubleshooting, which are the most frequently occurring failures and malfunctions of the device Cisco Systems ASASSMCSC10K9 along with tips on how to solve them. Even if you fail to solve the problem, the manual will show you a further procedure – contact to the customer service center or the nearest service center