6-7
Cisco ASA 5500 Series Configuration Guide using ASDM
OL-20339-01
Chapter 6 Configuring Multiple Context Mode
Information About Security Contexts
Figure 6-4 shows a gateway context with two contexts behind the gateway.
Figure 6-4 Cascading Contexts
Management Access to Security Contexts
The adaptive security appliance provides system administrator access in multiple context mode as well
as access for individual context administrators. The following sections describe logging in as a system
administrator or as a context administrator:
• System Administrator Access, page 6-7
• Context Administrator Access, page 6-8
System Administrator Access
You can access the adaptive security appliance as a system administrator in two ways:
• Access the adaptive security appliance console.
From the console, you access the system execution space, which means that any commands you enter
affect only the system configuration or the running of the system (for run-time commands).
• Access the admin context using Telnet, SSH, or ASDM.
See Chapter 32, “Configuring Management Access,” to enable Telnet, SSH, and SDM access.
As the system administrator, you can access all contexts.
When you change to a context from admin or the system, your username changes to the default
“enable_15” username. If you configured command authorization in that context, you need to either
configure authorization privileges for the “enable_15” user, or you can log in as a different name for
which you provide sufficient privileges in the command authorization configuration for the context. To
Admin
Context
Context A
Gateway
Context
GE 1/1.43
GE 0/0.2
Outside
GE 1/1.8
GE 0/0.1
(Shared Interface)
Internet
InsideInside
Outside
Inside
Outside
153366