[c-nsp] Transparent ASA and Dot1q

Ge Moua moua0100 at umn.edu
Thu Feb 14 09:30:00 EST 2008


Email me offline, I have a working config for this.

- G
 

-----Original Message-----
From: cisco-nsp-bounces at puck.nether.net
[mailto:cisco-nsp-bounces at puck.nether.net] On Behalf Of jcovini at free.fr
Sent: Thursday, February 14, 2008 8:07 AM
To: cisco-nsp at puck.nether.net
Subject: [c-nsp] Transparent ASA and Dot1q

Do you know if ASA set to transparent firewall mode is supporting dot1q
tagged frames ?

I am planning as follows but wanna make sure that will work :

My outside interface will connect to a dot1q interfaces of a "classic" L3
firewall, encapsulating 2 VLANs.
My inside interface will connect to a L2 switch port set also in dot1q and
encapsulating the same 2 VLANs.
I found no way to create/trunk VLANs in transparent mode (rev 7.0.7).

Will the ASA accept and filter the traffic, or will the "L2 decode drops"
counters will increase indefinitely ;-) ?

jc
_______________________________________________
cisco-nsp mailing list  cisco-nsp at puck.nether.net
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/



More information about the cisco-nsp mailing list