![configuring cisco asa 5505 configuring cisco asa 5505](https://image.slidesharecdn.com/howtoconfigurehotfailover-ciscoasa55105500seriesfirewalls-140722044748-phpapp01/95/how-to-configure-hot-failover-cisco-asa-5510-5500-series-firewalls-1-638.jpg)
- Configuring cisco asa 5505 how to#
- Configuring cisco asa 5505 software#
- Configuring cisco asa 5505 password#
To do so see the following article: Using DDNS Services with SBS 2008/2011 When using DHCP you will probably also want to set up a DDNS service. If using DHCP with your ISP, select “Use DHCP” and check “Obtain default route using DHCP” (which will automatically add the default gateway). (Note: you will need to add a static route for the default gateway later) If so select “Use the following IP address”, enter the appropriate IP and subnet mask under “Outside Address”. Interface IP Address Configuration: Presumably you have been assigned a static public IP by your ISP where you are running a mail server. Switch Port Allocation: Again the defaults are fine for this configuration. When you log back in later the user name will still be blank. I strongly recommend changing the password, and make it secure. Starting Point: In the first window accept the default “modify existing configuration” and click next.īasic Configuration: If you like you can change the ASA Host Name and domain, but I is not necessary. You can also start the wizard from within the ASDM from the menu under Wizards, Startup Wizard.
Configuring cisco asa 5505 password#
When prompted for a username and password leave both blank. Launch the ASDM using, choose to ignore the certificate error, and select “run Startup Wizard”. During the process do not make changes to the internal interface IP or Internal DHCP settings. We will run the Start up Wizard to do the basic configuration.
Configuring cisco asa 5505 how to#
I will however post a follow-up article outlining how to do so from the CLI, using only a handful of commands. For the record this can be accomplished much more easily from the CLI/Command Line Interface, but we SBS folk tend to like to do things from a GUI. The ASDM version used at the time of writing is 6.4(5), and ASA Version 8.2(5). Service-policy qos_outside_policy interface OutsideFollowing is an outline as to how to configure a Cisco ASA 5505 for an SBS 2008/2011 network, including basic router configurations, IP addressing, and port forwarding, using the GUI/ASDM. There is outbound traffic shaping for 95Mbps, and the policy is applied to the "Outside" interface. So here goes - t he example below gives priority to DSCP values 46 (ef), 40 (cs5) and 48 (cs6). However - please check your phone vendor's config - SIP setup may use other DSCP values (34, 40) that you'll want to add to the config below.įour - unlike a router where you can have multiple policies - the ASA supports priority for one policy only - all other traffic will be best effort. Three - your phones or other networking equipment (switch or router) will have to mark your voice traffic with proper DSCP values. The below config works for me on 9.1.5 and earlier.
Configuring cisco asa 5505 software#
However - that may have changed with the release of the 9.2.x software code (I can't confirm). The ASA 5505 is not yet EOL - so should keep the shaping with QoS capabilities.
![configuring cisco asa 5505 configuring cisco asa 5505](https://1.bp.blogspot.com/-9VJyNmvwQrk/XO4-fj7SczI/AAAAAAAAIZg/f5W06oGjNB0zCkt4I6VC33_qYJs-v-QOQCLcBGAs/s1600/Screenshot%2B2019-05-29%2Bat%2B1.40.13%2BPM.png)
Two - the ASA 5505 and older 5500's supports traffic shaping with QoS whereas the newer ASA 5500-X platform does not. However - your ASA will work to put the priority traffic (voice) on the wire before all other traffic (this will help ensure voice quality as best as possible). One - once your traffic hits the internet - there is no QoS. Here's a description from Cisco comparing the two:įour caveats for using Traffic Shaping with QoS on the ASA (I'm sure there are more): I prefer the latter and have had great success using it. You can use the priority queue with traffic policing or you can use traffic shaping.