4-8
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Chapter 4 Configuring Switch Ports and VLAN Interfaces for the Cisco ASA 5505 Adaptive Security Appliance
Configuring VLAN Interfaces
hostname(config-if)#
no shutdown
hostname(config-if)#
interface vlan 200
hostname(config-if)#
nameif inside
hostname(config-if)#
security-level 100
hostname(config-if)#
ip address 10.2.1.1 255.255.255.0
hostname(config-if)#
no shutdown
hostname(config-if)#
interface vlan 201
hostname(config-if)#
nameif dept1
hostname(config-if)#
security-level 90
hostname(config-if)#
ip address 10.2.2.1 255.255.255.0
hostname(config-if)#
no shutdown
hostname(config-if)#
interface vlan 202
hostname(config-if)#
nameif dept2
hostname(config-if)#
security-level 90
hostname(config-if)#
ip address 10.2.3.1 255.255.255.0
hostname(config-if)#
no shutdown
hostname(config-if)#
interface vlan 300
hostname(config-if)#
nameif dmz
hostname(config-if)#
security-level 50
hostname(config-if)#
ip address 10.3.1.1 255.255.255.0
hostname(config-if)#
no shutdown
hostname(config-if)#
interface vlan 400
hostname(config-if)#
nameif backup-isp
hostname(config-if)#
security-level 50
hostname(config-if)#
ip address 10.1.2.1 255.255.255.0
hostname(config-if)#
no shutdown
hostname(config-if)#
failover lan faillink vlan500
hostname(config)#
failover interface ip faillink 10.4.1.1 255.255.255.0 standby 10.4.1.2
255.255.255.0
The following example configures three VLAN interfaces for the Base license. The third home interface
cannot forward traffic to the business interface.
hostname(config)#
interface vlan 100
hostname(config-if)#
nameif outside
hostname(config-if)#
security-level 0
hostname(config-if)#
ip address dhcp
hostname(config-if)#
no shutdown
hostname(config-if)#
interface vlan 200
hostname(config-if)#
nameif business
hostname(config-if)#
security-level 100
hostname(config-if)#
ip address 10.1.1.1 255.255.255.0
hostname(config-if)#
no shutdown
hostname(config-if)#
interface vlan 300
hostname(config-if)#
no forward interface vlan 200
hostname(config-if)#
nameif home
hostname(config-if)#
security-level 50
hostname(config-if)#
ip address 10.2.1.1 255.255.255.0
hostname(config-if)#
no shutdown
Summary of Contents for 500 Series
Page 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Page 45: ...P A R T 1 Getting Started and General Information ...
Page 46: ......
Page 277: ...P A R T 2 Configuring the Firewall ...
Page 278: ......
Page 561: ...P A R T 3 Configuring VPN ...
Page 562: ......
Page 891: ...P A R T 4 System Administration ...
Page 892: ......
Page 975: ...P A R T 5 Reference ...
Page 976: ......