[c-nsp] Cat6509 and transparent firewall

Ruben Alvarez raa at opusnet.com
Mon Nov 12 17:56:25 EST 2007


Very good.  I have options.  I'll give those a try.

-----Original Message-----
From: Valentin Stoicescu [mailto:valentin.stoicescu at gmail.com] 
Sent: Monday, November 12, 2007 2:52 PM
To: Ruben Alvarez
Cc: cisco-nsp at puck.nether.net
Subject: Re: [c-nsp] Cat6509 and transparent firewall

Ruben Alvarez wrote:
> Hello,
>
> I have a client with a transparent firewall connected to my Cat 6509.  Its
> running PF firewall running on a server and currently I have then on a
VLAN
> with an interface VLAN as their gateway.  The client has requested more IP
> addresses.  They don't want to renumber and I can't expand their current
/28
> so I'm trying to think of a way to route another subnet to them.
>
> My first thought was to give them another VLAN and turn their switchport
to
> a trunk, but I don't know if a firewall like that can trunk with a Cisco
> switch.  Anyone have any ideas about this?  The firewall has no IP address
> for it is a bridge.
>
> Thanks.
>
>
>
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
>
>   
BSD knows about vlan tagging 801.1q .. just needs the suport in the 
kernel for that.




More information about the cisco-nsp mailing list