Class#2 | Lab1 to allow ICMP between two same security-level zones [CONFIGS]
ASAV =========== hostname CISCOASAV ! interface gi0/1 no shutdown nameif OUTSIDE security-level 0 ip add 200.200.200.2 255.255.255.0 ! int gi0/0 no shutdown ! int gi0/0.10 vlan 10 nameif HR_VLAN security-level 50 ip address 10.1.1.1 255.255.255.0 ! int gi0/0.20 vlan 20 nameif SALES_VLAN security-level 50 ip address 192.168.1.1 255.255.255.0 ! dhcpd address 192.168.1.2-192.168.1.150 SALES_VLAN dhcpd enable SALES_VLAN ! exit ======================================== ======================================== SWITCH ! hostname LANSW01 ! interface gi0/2 no shutdown sw trunk encap dot1q sw mo tr sw tr all vlan 10,20 ! int gi0/3 no shutdown sw mo ac sw ac vlan 10 ! int gi0/0 no shutdown sw mo ac sw ac vlan 20 ! vlan 10 name HR_VLAN ! vlan 20 name SALES_VLAN ! ==================================== ==================================== HR_VLAN user ! hostname HR_BLAN_user01 ! interface e0/0 no shutdown ip add 10.1.1.100 255.255.255.0 ! ip route 0.0.0.0 0.0.0.0 10.1.1.1 ! ===================== SALES_VLAN user ! hostname SALES_VLAN_user02 ! interface e0/0 no shutdown ip add dhcp ! ip route 0.0.0.0 0.0.0.0 192.168.1.1 !