30-11
Cisco ASA Series Firewall CLI Configuration Guide
Chapter30 Configuring the ASA CX Module
Configuring the ASA CX Module
ASA 5512-X through ASA 5555-X (Software Module)
These models run the ASA CX module as a software module, and the ASA CX management interface
shares the Management 0/0 interface with the ASA. For initial setup, you can connect with SSH to the
ASA CX default IP address (192.168.1.2/24). If you cannot use the default IP address, you can either
session to the ASA CX over the backplane or use ASDM to change the management IP address so you
can use SSH.
If you have an inside router
If you have an inside router, you can route between the Management 0/0 network, which includes both
the ASA and ASA CX management IP addresses, and the inside network for Internet access. Be sure to
also add a route on the ASA to reach the Management network through the inside router.
If you do not have an inside router
If you have only one inside network, then you cannot also have a separate management network. In this
case, you can manage the ASA from the inside interface instead of the Management 0/0 interface. If you
remove the ASA-configured name from the Management 0/0 interface, you can still configure the ASA

ASA 5545-X ASA CX Management 0/0

Default IP: 192.168.1.2

ASA Management 0/0

Default IP: 192.168.1.1
334664
Internet
Management PC
Proxy or DNS Server (for example)
Router
ASA
Management 0/0
Outside
CX
Management
Inside
ASA CX Default
Gateway
ASA gateway for Management
334666