[c-nsp] FWSM Question

Paul Stewart paul at paulstewart.org
Thu Mar 22 10:36:45 EST 2007


Sorry to bump my own post but I can see MAC addresses no problem ....

Internet  xx.xx.248.1             1   0012.0023.5580  ARPA   Vlan99
Internet  xx.xx.248.2             -   0004.defd.f40a  ARPA   Vlan99

Is this a routing issue even though they are part of the same VLAN?  I read
that an access-list isn't required on the interface (FWSM) but maybe this is
incorrect?

Thanks again,

Paul


-----Original Message-----
From: cisco-nsp-bounces at puck.nether.net
[mailto:cisco-nsp-bounces at puck.nether.net] On Behalf Of Paul Stewart
Sent: Thursday, March 22, 2007 11:29 AM
To: cisco-nsp at puck.nether.net
Subject: [c-nsp] FWSM Question

Hi folks....

I'm trying to get a FWSM module up and running... can't get communication
between the MSFC and the FWSM working yet.... figure I'm missing something
simple..

FWSM Version 2.3(2)
nameif vlan99 Outside security0
same-security-traffic permit inter-interface mtu Outside 1500 ip address
Outside xx.xx.248.1 255.255.255.248 interface Outside



firewall multiple-vlan-interfaces
firewall module 8 vlan-group 1
firewall vlan-group 1  66,99

interface Vlan99
 description FWSM
 ip address xx.xx.248.2 255.255.255.248





More information about the cisco-nsp mailing list