Configuration Example
Figure 15: Firewall on a Stick (with vPC) Deployment
Step 1: Configure the switch.
Note
This example shows a partial configuration of switch Sw1. The configuration needs to be extended appropriately
toward all the ASAs similarly. Other features are assumed to be configured already.
interface vlan 10
description Inside_Vlan_to_Network
vrf member INSIDE
ip address 192.168.10.10/24
hsrp 10
ip address 192.168.10.1
interface vlan 20
description Outside_Vlan_to_Network
vrf member OUTSIDE
ip address 192.168.20.10/24
hsrp 20
ip address 192.168.20.1
interface vlan 100
description Inside_Vlan_to_ASA
vrf member INSIDE
ip address 192.168.100.10/24
hsrp 100
ip address 192.168.100.1
interface vlan 200
description Outside_Vlan_to_ASA
Cisco Nexus 9000 Series NX-OS Intelligent Traffic Director Configuration Guide, Release 9.x
56
Configuring ITD