Top
ServerView Resource Orchestrator Cloud Edition V3.3.0 Design Guide
FUJITSU Software

G.3.10 For Deploying Firewalls or Server Load Balancers (Combinations of ASA 5500 Series and BIG-IP LTM Series)

The default model configuration assumed by a sample script is given below.

Figure G.9 Default Model Configuration for a Sample Script (Firewall and Server Load Balancer: ASA 5500 Series and BIG-IP LTM Series)


When a combination of ASA 5500 series and BIG-IP LTM series are used as the firewall and server load balancer for 3-tier models in a system, the firewall rulesets are used together with the server load balancer rulesets.

The names of the sample rulesets provided by Resource Orchestrator are listed below.

For deploying the BIG-IP LTM series as server load balancers

SLB_with_SSL-ACC--BIGIP1

For systems that use the BIG-IP LTM series as server load balancers (with an SSL accelerator)

LAN Ports to be Used
  • For Public LANs and Unit Synchronization

    mytrunk: Connection using Link aggregation

    • 1.1

    • 1.2

  • For the Admin LAN

    mgmt

SLB_without_SSL-ACC--BIGIP1

For systems that use the BIG-IP LTM series for server load balancers (without SSL accelerator).

LAN Ports to be Used
  • For Public LANs and Unit Synchronization

    mytrunk: Connection using Link aggregation

    • 1.1

    • 1.2

  • For the Admin LAN

    mgmt


For Deploying the ASA 5500 Series as Firewalls (for ASA 5500)

FW_of_3Tier_sys_inc_SLB--ASA1

For the systems that use ASA 5510 as an ASA 5500 series model for 3-tier models

LAN Ports to be Used
  • For Public LANs (Center Switch Side)

    ethernet0/0

  • For Public LANs (L2 Switch Side)

    redundant1: Redundant LAN Channels

    • ethernet0/1

    • ethernet0/2

  • For the Admin LAN

    management0/0

  • For Unit Synchronization

    ethernet0/3

FW_of_3Tier_sys_inc_SLB--ASA2

For the systems that use ASA 5520/5540/5550 as an ASA 5500 series model for 3-tier models

LAN Ports to be Used
  • For Public LANs (Center Switch Side)

    gigabitethernet0/0

  • For Public LANs (L2 Switch Side)

    redundant1: Redundant LAN Channels

    • gigabitethernet0/1

    • gigabitethernet0/2

  • For the Admin LAN

    management0/0

  • For Unit Synchronization

    gigabitethernet0/3

FW_of_3Tier_sys_inc_SLB--ASA3

For the systems that use ASA 5580 as an ASA 5500 series model for 3-tier models

LAN Ports to be Used
  • For Public LANs (Center Switch Side)

    gigabitethernet3/0

  • For Public LANs (L2 Switch Side)

    redundant1: Redundant LAN Channels

    • gigabitethernet3/1

    • gigabitethernet3/2

  • For the Admin LAN

    management0/0

  • For Unit Synchronization

    gigabitethernet3/3