Chapter 4
Configuring Switch Ports and VLAN Interfaces for the Cisco ASA 5505 Adaptive Security Appliance
With the Base license, the third VLAN can only be configured to initiate traffic to one other VLAN. See
Figure 4-1
cannot initiate contact with Business.
Figure 4-1
with Base License
With the Security Plus license, you can configure 20 VLAN interfaces, including a VLAN interface for
failover and a VLAN interface as a backup link to your ISP. This backup interface does not pass through
traffic unless the route through the primary interface fails. You can configure trunk ports to accomodate
multiple VLANs per port.
The ASA 5505 adaptive security appliance supports Active/Standby failover, but not Stateful failover.
Note
See
Figure 4-2
Figure 4-2
with Security Plus
OL-12172-03
for an example network where the Home VLAN can communicate with the Internet, but
ASA 5505 Adaptive Security Appliance with Base License
Internet
ASA 5505
Business
for an example network.
ASA 5505 Adaptive Security Appliance with Security Plus License
Backup ISP
Primary ISP
ASA 5505
License
Home
Failover
DMZ
ASA 5505
Failover Link
Inside
Cisco Security Appliance Command Line Configuration Guide
Interface Overview
4-3