Cisco Cisco IPS 4345 Sensor Libro bianco

Pagina di 79
26
Firewall
August 2012 Series
26
Procedure 2 
ASA with non-trunked Internet access
If you are using a non-trunked single ISP design, complete this procedure. 
If you are using a trunked design using either single or dual ISPs, skip to 
Procedure 3.
Step 1:  
From a client on the internal network, navigate to the firewall’s 
inside IP address, and then launch the Cisco ASA Security Device Manager. 
(Example: https://ie-asa5545.cisco.local/)
Step 2:  
In 
Configuration > Device Setup > Interfaces
, click the interface 
that is connected to the outside switch. (Example: GigabitEthernet0/3)
Step 3:  
Click 
Edit
.
Step 4:  
In the Edit Interface dialog box, select 
Enable Interface
.
Step 5:  
Enter an 
Interface Name
. (Example: outside)
Step 6:  
In the 
Security Level
 box, enter a value of 
0
.
Step 7:  
Enter the interface 
IP Address
. (Example: 172.16.130.124)
Step 8:  
Enter the interface 
Subnet Mask
, and then click
OK
. (Example: 
255.255.255.0)
Step 9:  
On the Interface pane, click 
Apply
.
Step 10:  
Navigate to 
Configuration > Device Management > High
Availability > Failover.
Step 11:  
On the Interfaces tab, in the 
Standby IP Address
 column, enter 
the IP address of the standby unit for the interface you just created. 
(Example: 172.16.130.123)