17-10
Cisco ASA Series Firewall CLI Configuration Guide
Chapter 17 ASA CX Module
Configure the ASA CX Module
If you do not have an inside router
If you have only one inside network, then you cannot also have a separate management network, which
would require an inside router to route between the networks. In this case, you can manage the ASA from
the inside interface instead of the Management 0/0 interface. Because the ASA CX module is a separate
device from the ASA, you can configure the ASA CX Management 1/0 address to be on the same
network as the inside interface.
ASA 5512-X through ASA 5555-X (Software Module)
These models run the ASA CX module as a software module, and the ASA CX management interface
shares the Management 0/0 interface with the ASA. For initial setup, you can connect with SSH to the
ASA CX default IP address (192.168.1.2/24). If you cannot use the default IP address, you can either
session to the ASA CX over the backplane or use ASDM to change the management IP address so you
can use SSH.
Internet
Layer 2
Switch
ASA
Inside
ASA CX Management 1/0
ASA Management 0/0 not used
Outside
CX
ASA CX Default Gateway
Management PC
Proxy or DNS Server
(for example)
334659
ASA 5545-X
ASA CX Management 0/0
Default IP: 192.168.1.2
ASA Management 0/0
Default IP: 192.168.1.1
334664
Summary of Contents for ASA 5512-X
Page 5: ...P A R T 1 Service Policies and Access Control ...
Page 6: ......
Page 51: ...P A R T 2 Network Address Translation ...
Page 52: ......
Page 127: ...P A R T 3 Application Inspection ...
Page 128: ......
Page 255: ...P A R T 4 Connection Settings and Quality of Service ...
Page 256: ......
Page 303: ...P A R T 5 Advanced Network Protection ...
Page 304: ......
Page 339: ...P A R T 6 ASA Modules ...
Page 340: ......