I am using the Tiny Linux distro here, because of the small footprint. They are both running on the same host as the ASAv and therefore have access to the same EPGs as the ASA does.
- You can download the same VM from here: https://communities.vmware.com/docs/DOC-21621.
- The OVA file should be imported into vCenter and named
Finance-VM
. Set the network interface to use theACME-ASAvctxACME-VRFFinance-BD
port group.
- Repeat the process for the second VM, calling it
Marketing-VM
and making sure that it is connected to theMarketing
EPG.
- Following the topology diagram at the start of this chapter, the
Finance
VM has an IP address of172.16.1.10/24
, and theMarketing
VM has an IP address of172.16.2.10/24
. Both have their default gateways set to the ASAv's respective interface, and both can ping their default gateways. Here is theFinance
VM pinging the ASA:
- Here we can see the
Marketing
VM pinging the ASA:
- Because we permitted IP traffic through the firewalls...