- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
09-30-2021 04:04 AM
Hello All,
We are working on a design to move Cisco ASAs firewalls into PA 5260 with Multi-vSys mode enabled, so each Cisco ASA is a separate vSys.
While everything else looks like nice and easy-to-convert, we have problems with shared interface. In Cisco world multicontext ASA might have interface in same VLAN X and SUBNET Y on each context easily.
Is it possible to do the same on Palo Alto platform? I am familiar with Shared Gateway and External Zones, but it doesn't look like it will solve our problems in full. For example we need to have 3 sub-interfaces in same subnet (one per context), is it actually possible to create those and add into single Shared Gateway?
Thanks!