Jump to content


Photo

Link Balancer infront of Cisco ASA


Best Answer Kaushik Thirumurthy, 18 May 2015 - 06:15 AM

Hello Ashok,

 

Kindly let us know the deployment mode of the link balancer.

 

If it is firewall disabled mode, you can assign an IP address on the WAN3 interface and ASA on the same public IP address subnet. ( it has to be different on ASA and WAN3 interface).

 

The gateway of the ASA should be the ISP router's IP address  ( this would be the gateway of the link balancer's WAN3 interface as well).

 

Link balancer's LAN interface IP address is insignifcant on firewall disabled mode. It is  just used for management access alone.

 

Please add all the available IP address on the Public subnet (excluding WAN IP and gateway IP address) under additional IP address section on WAN3 configuration.

 

Refer to the below link as  a reference to deploy Link balancer in firewall disabled mode.

 

https://techlib.barr...f Your Firewall

 

Do let us know if you have any questions.

 

Thanks,

Kaushik

Go to the full post


  • Please log in to reply
2 replies to this topic

#1 ashok

ashok
  • Members
  • 2 posts

Posted 18 May 2015 - 05:08 AM

My sinario is Link balancer with 3 WAN connection and LAN connecting to ASA's outside interface.

WAN 3 has a internet connection which has 6 public IPs also need OWA access through one of that IP.

 

What is the IP assignment?

WAN 3 and ASA's outside interface using that same public IP.

what about Link balancer's LAN IP ?

what is the Default Gateway for ASA ?

 

Please guide me.



#2 Kaushik Thirumurthy

Kaushik Thirumurthy
  • Barracuda Team Members
  • 41 posts

Posted 18 May 2015 - 06:15 AM   Best Answer

Hello Ashok,

 

Kindly let us know the deployment mode of the link balancer.

 

If it is firewall disabled mode, you can assign an IP address on the WAN3 interface and ASA on the same public IP address subnet. ( it has to be different on ASA and WAN3 interface).

 

The gateway of the ASA should be the ISP router's IP address  ( this would be the gateway of the link balancer's WAN3 interface as well).

 

Link balancer's LAN interface IP address is insignifcant on firewall disabled mode. It is  just used for management access alone.

 

Please add all the available IP address on the Public subnet (excluding WAN IP and gateway IP address) under additional IP address section on WAN3 configuration.

 

Refer to the below link as  a reference to deploy Link balancer in firewall disabled mode.

 

https://techlib.barr...f Your Firewall

 

Do let us know if you have any questions.

 

Thanks,

Kaushik



#3 ashok

ashok
  • Members
  • 2 posts

Posted 21 May 2015 - 02:29 AM

Hello Kaushik,

 

Thanks for the prompt reply.

I am gonna use link balancer in firewall disable mode.

 

One more doubt...

 

even if we use WAN3's default gateway as a gateway for ASA, all the traffic recieved by link balancer will be link balanced to all three WAN links ?

 

thanks.