[c-nsp] Cat6509 and transparent firewall

Ruben Alvarez raa at opusnet.com
Mon Nov 12 16:24:05 EST 2007


Hello,

I have a client with a transparent firewall connected to my Cat 6509.  Its
running PF firewall running on a server and currently I have then on a VLAN
with an interface VLAN as their gateway.  The client has requested more IP
addresses.  They don't want to renumber and I can't expand their current /28
so I'm trying to think of a way to route another subnet to them.

My first thought was to give them another VLAN and turn their switchport to
a trunk, but I don't know if a firewall like that can trunk with a Cisco
switch.  Anyone have any ideas about this?  The firewall has no IP address
for it is a bridge.

Thanks.





More information about the cisco-nsp mailing list