Re: [fw-wiz] Pix 535 - Filtering to VLANs?




James Burns said:
Just a quick query...

I'm using a pair of Pix 535's in a failover set. Is it possible to match
traffic entering the outside interface, and subsequently put it into a
VLAN on exiting the inside interface?

A couple of years ago I set up a 525G (2 gig ports and two FE) with
filtering on the outside gigabit interface and five VLANs mapped to the
inside gigabit interface. Worked fine.

It was not a failover config, however. Not sure how that would change a
VLAN implementation.

- SS

--
Scott L. Stursa
CCNA, MCSA, Security+
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • [fw-wiz] Pix 535 - Filtering to VLANs?
    ... I'm using a pair of Pix 535's in a failover set. ... Is it possible to match traffic entering the outside interface, and subsequently put it into a VLAN on exiting the inside interface? ...
    (Firewall-Wizards)
  • Cisco 877w: Fa0-3 Interfaces up but no traffic passes
    ... Data Vlan101 only, no voice vlan required, WPA ... output errors, 0 collisions, 0 interface resets ... switchport trunk native vlan 101 ... bridge-group 101 subscriber-loop-control ...
    (comp.dcom.sys.cisco)
  • Re: 2600 router + 2924 switch and vlans
    ... I can route from a port ... assigned to the def vlan, but not from any port assigned to vlan 2 ... interface FastEthernet0/0 ... switchport trunk encapsulation isl ...
    (comp.dcom.sys.cisco)
  • Re: kern/109815: wrong interface identifier at pfil_hooks for vlans + if_bridge
    ... It is cleared when an mbuf chain is passed to another entity which may consume the frame in that mbuf chain, in case the entity re-enters ether_inputwith the same mbuf chain for local delivery (e.g. bridge, netgraph, vlan). ... "logical" interface. ...
    (freebsd-net)
  • Still cannot Route.
    ... interface FastEthernet0/0 ... description Blue Haven Servers VLAN 10 ...
    (comp.dcom.sys.cisco)