Hi.
I have goverment customers buying the SGW and need help to deploy the box inline
when the customer have 2-3 virtuall firewalls on the same physical box (Cisco ASA 5520 with several context)
also sharing same physical interfaces.
One of the interfaces from Cisco ASA 5520 is dedicated physical interface (native, eg. no VLAN) connected to ISP (Internet provider)
but the other 3 physical interfaces consist of several VLAN for Servers, Klients, DMZ for each virtuall firewalls.
So, MGMT port of SGW is ok, connected to a core switch in the MGMT VLAN and is ok.
LAN port and WAN port of SGW i realy don't know where to connect.
Does the SGW understand VLAN? or can "see" all trafic for all VLAN?
Should I connect LAN to a port on core switch and TAG all VLAN's klient & servers to this?
and then connect WAN port to core switch and untag the link net between all virtual firewalls?
Regards
Owe B. Robertsen