Firewall and OSPF - Passive interfaces??

Unanswered Question
Apr 27th, 2009

I have a pair of ASA5550 with OSPF enabled on the outside interfaces with our internet routers. Firewalls get the candidate default route from the internet routers.

Anyway, when I do a "sh ospf interface" all interfaces are listed under area0..it should be only the outside interface.

Is there a passive interface command just like for routers??

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Jon Marshall Mon, 04/27/2009 - 10:45

Under your router ospf configuration what have you used as the "network x.x.x.x area 0"

ie. does x.x.x.x also cover you other interfaces ?

Jon

opers13 Mon, 04/27/2009 - 14:36

ha..that's it! I have the subnet for the inside network in there...

Thanks Jon

Actions

This Discussion