help FWSM Config

Unanswered Question
Feb 27th, 2008
User Badges:

hello all

i'm in process of configuring FWSM on 6509 switch in a bank i have 5 vlans

1.MGMT Vlan for amangement staff vlan 100

2.users Vlan for users vlan 101

3. Servers-1 Vlan for group of servers vlan 102

4. Servers-2 Vlan for another group of servers Vlan 103

5. Vlan 104 for connection with internet router (this vlan for internet connection)

what i want is to configure the FWSM to inspect and allow all connections between all vlans in addition to allow all vlans to connect to internet


and i want to configure FWSM in routed mode with only one context

so please do help me with best scenario and configuration for this topology


with the knowledge FWSM software version is 2.2


thanks in advance

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Fernando_Meza Tue, 03/04/2008 - 14:50
User Badges:
  • Gold, 750 points or more

Hi,


Basically on the Catalyst switch you need to allocate the mentioned VLANS to a firewall group. You might also need to configure SVI on the core for routing VLANS that are not routed by the FWSM. Once the FWSM has VLANs allocated to it then you need to configure it like any other PIX. This link will give you the steps you need to follow. you might want to read on first so that you understand how traffic flows within the catalysts and its modules.


http://cisco.com/en/US/docs/security/fwsm/fwsm22/configuration/guide/switch.html



I hope it helps .. please rate it if it does !!!







Actions

This Discussion