Re: Question regarding ASA inside host limit

From: Jay McMickle <jay.mcmickle_at_yahoo.com>
Date: Sat, 18 Jan 2014 15:51:51 -0600

Now that's thinking like a CCIE.
+1

Regards,
Jay McMickle- 2x CCIE #35355 (R/S,Sec)
Sent from my iPhone 5

> On Jan 18, 2014, at 10:42 AM, marc edwards <renorider_at_gmail.com> wrote:
>
> Could always NAT on inside before ASA. What it doesn't know won't hurt it
;)
>
>> On Saturday, January 18, 2014, Anthony <anthonybonilla.ccie_at_gmail.com>
wrote:
>> Great, thanks again guys!
>>
>> Sent from my iPhone
>>
>> > On Jan 18, 2014, at 9:38 AM, Jay McMickle <jay.mcmickle_at_yahoo.com>
wrote:
>> >
>> > One of the best ways to ease this pain is to not use the ASA as the
default gateway since it's the number of ARP entries that matter to the ASA
against the licenses. Another way to is to reduce the ARP entries (reduce arp
aging) and xlate timers.
>> >
>> > The license upgrade is only about $125 USD, but if it's only one printer
that's causing the license issue, these tweaks might be helpful as it doesn't
really need to be known by the ASA.
>> >
>> > Regards,
>> > Jay McMickle- 2x CCIE #35355 (R/S,Sec)
>> > Sent from my iPhone 5
>> >
>> >> On Jan 18, 2014, at 7:08 AM, Gabriel Kujawski <gabriel_at_brama.waw.pl>
wrote:
>> >>
>> >> Yeah, no impact as long as you are within ten devices limit.
>> >>
>> >> Sent from your iPhone
>> >>
>> >>> On 18 sty 2014, at 13:56, Anthony <anthonybonilla.ccie_at_gmail.com>
wrote:
>> >>>
>> >>> Cool that's what I was hoping. Also, there shouldn't be any impact to
services for first 10 hosts, right?
>> >>>
>> >>> Sent from my iPhone
>> >>>
>> >>>> On Jan 18, 2014, at 12:56 AM, Gabriel Kujawski <gabriel_at_brama.waw.pl>
wrote:
>> >>>>
>> >>>> Hi,
>> >>>> The 11th host will be not be allowed to communicate with the outside
world.
>> >>>>
>> >>>> Sent from your iPhone
>> >>>>
>> >>>>> On 18 sty 2014, at 00:13, Anthony Bonilla
<anthonybonilla.ccie_at_gmail.com> wrote:
>> >>>>>
>> >>>>> Hi guys,
>> >>>>>
>> >>>>> Can someone please let me know implication of exceeding the base
limit on
>> >>>>> ASA for inside hosts (currently at 10)? I think I might be reaching
that
>> >>>>> limit and already looking into getting license for more hosts but
was
>> >>>>> curious in the meantime would ASA continue allowing traffic if I
tried to
>> >>>>> use 11th machine or would it have any adverse affect on the prod
traffic?
>> >>>>> Any insight would be greatly appreciated.
>> >>>>>
>> >>>>> TIA
>> >>>>>
>> >>>>> Tony
>> >>>>>
>> >>>>>
>> >>>>> Blogs and organic groups at http://www.ccie.net
>> >>>>>
>> >>>>>
Received on Sat Jan 18 2014 - 15:51:51 ART

This archive was generated by hypermail 2.2.0 : Sat Feb 01 2014 - 10:24:52 ART