cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
354
Views
0
Helpful
2
Replies

FWSM - Statics between same security interfaces necessary?

Roble Mumin
Level 3
Level 3

I will have to implement a change which involves switching a single mode FWSM to multi mode.

Currently i have everything configured based on NAT0/NAT exemption which is going to be converted into static statements when doing the mode multi switch.

The only thing i am currently not sure about is if i need a static for same security level interfaces. Yes i know you only do statics from high to low interfaces but i just wanted to make sure that i don't have to prepare 4 pages of static rules before initiating the change.

Same security interfaces - static necessary? Please say NO. :)

Thanks for reading

Roble

1 Accepted Solution

Accepted Solutions

Jon Marshall
Hall of Fame
Hall of Fame

Roble

"Please say NO. :)"

Okay then, no you don't need statics :-). See attached link for confirmation -

http://www.cisco.com/en/US/docs/security/fwsm/fwsm32/configuration/guide/cfgnat_f.html#wp1042673

Jon

View solution in original post

2 Replies 2

Jon Marshall
Hall of Fame
Hall of Fame

Roble

"Please say NO. :)"

Okay then, no you don't need statics :-). See attached link for confirmation -

http://www.cisco.com/en/US/docs/security/fwsm/fwsm32/configuration/guide/cfgnat_f.html#wp1042673

Jon

Hi Jon,

that was exactly what i was looking for. Thanks for pointing that out.

Roble

Review Cisco Networking products for a $25 gift card