46-10
User Guide for Cisco Security Manager 4.4
OL-28826-01
Chapter 46 Configuring Bridging Policies on Firewall Devices
Management IP Page
Management IP Page
A transparent firewall does not participate in IP routing. The only IP configuration required for the
device is specification of a management IP address, which is used as the source address for traffic
originating on the device, such as system messages or communications with AAA servers. You can also
use this address for remote-management access.
For IPv4 traffic, the management IP address is required to pass any traffic.
Note In addition to the management IP address for the device, you can configure an IP address for the
Management 0/0 or 0/1 management-only interface. This IP address can be on a separate subnet from
the main management IP address.
Use the Management IP page to set the management IP address for a security device, or for a context in
transparent firewall mode.
Navigation Path
(Device view) Select Platform > Bridging > Management IP from the Device Policy selector.
(Policy view) Select PIX/ASA/FWSM Platform > Bridging > Management IP from the Policy
Type selector. Right-click Management IP to create a policy, or select an existing policy from the
Shared Policy selector.
Related Topics
About Bridging on Firewall Devices, page46-1
ARP Table Page, page46-3
ARP Inspection Page, page 46-5
MAC Address Table Page, page46-7
MAC Learning Page, page 46-8
Field Reference
Management IPv6 Page (ASA 5505)
A transparent firewall does not participate in IP routing. The only IP configuration required for the
device is specification of a management IP address, which is used as the source address for traffic
originating on the device, such as system messages or communications with AAA servers. You can also
use this address for remote-management access.
For IPv6 traffic, you must, at a minimum, configure the link-local addresses to pass traffic, but a global
management address is recommended for full functionality, including remote management and other
management operations. If you configure the global address, a link-local address is automatically
configured on each interface, so you do not also need to specifically configure a link-local address.
Table46-10 Management IP Page
Element Description
Management IP Address The management IP address.
Subnet Mask The subnet mask that corresponds to the management IP address.