Contents
vii
Cisco ASA 5500 Series Configuration Guide using the CLI
An Outside User Visits a Web Server on the Inside Network 4-26
An Outside User Attempts to Access an Inside Host 4-27
CHAPTER
5Configuring Multiple Context Mode 5-1
Information About Security Contexts 5-1
Common Uses for Security Contexts 5-2
Context Configuration Files 5-2
Context Configurations 5-2
System Configuration 5-2
Admin Context Configuration 5-2
How the ASA Classifies Packets 5-3
Valid Classifier Criteria 5-3
Classification Examples 5-4
Cascading Security Contexts 5-6
Management Access to Security Contexts 5-7
System Administrator Access 5-7
Context Administrator Access 5-8
Information About Resource Management 5-8
Resource Limits 5-8
Default Class 5-9
Class Members 5-10
Information About MAC Addresses 5-11
Default MAC Address 5-11
Interaction with Manual MAC Addresses 5-11
Failover MAC Addresses 5-12
MAC Address Format 5-12
Licensing Requirements for Multiple Context Mode 5-12
Guidelines and Limitations 5-13
Default Settings 5-14
Configuring Multiple Contexts 5-14
Task Flow for Configuring Multiple Context Mode 5-14
Enabling or Disabling Multiple Context Mode 5-15
Enabling Multiple Context Mode 5-15
Restoring Single Context Mode 5-16
Configuring a Class for Resource Management 5-16
Configuring a Security Context 5-18
Automatically Assigning MAC Addresses to Context Interfaces 5-22
Changing Between Contexts and the System Execution Space 5-23
Managing Security Contexts 5-23