05-11-2009 05:46 PM - edited 03-11-2019 08:30 AM
Hello.
I trie to change firewall mode from single to multiple, but It won't wrok,
I don't know why is it!.
please check up follwoing log.
Proceed with change mode? [confirm]
FWSM_ACT#
[Resuming connection 1 to 127.0.0.71 ... ]
Convert the system configuration? [confirm]
!
The old running configuration file will be written to disk
!
1385 bytes copied in 0.860 secs
The admin context configlet will be written to disk
!
1228 bytes copied in 0.920 secs
The new running configuration file was written to flash
Firewall mode: multiple
00:29:40: %MFIB_CONST_RP-6-REPLICATION_MODE_CHANGE: Replication Mode Change Detected. Current system replication mode is
Egress
00:29:40: SP: The PC in slot 7 is shutting down. Please wait ...
00:29:40: SP: PC shutdown completed for module 7
00:29:40: %STANDBY-6-STATECHANGE: Vlan112 Group 112 state Active -> Init
00:29:41: %C6KPWR-SP-4-DISABLED: power to module in slot 7 set off (Reset)
FWSM_ACT#discon
Closing connection to 127.0.0.71 [confirm]
FWSM_ACT#
FWSM#
FWSM# show mode
Firewall mode: single
The flash mode is the SAME as the running mode.
FWSM#
FWSM#
FWSM Firewall Version 2.3(5)
Compiled on Sun 08-Jul-07 19:28 by dalecki
FWSM up 8 mins 13 secs
Hardware: WS-SVC-FWM-1, 1024 MB RAM, CPU Pentium III 1000 MHz
Flash 04-29-05STI Flash 7.2.0 @ 0xc321, 20MB
0: gb-ethernet0: irq 5
1: gb-ethernet1: irq 7
2: ethernet0: irq 11
Licensed Features:
Failover: Enabled
VPN-DES: Enabled
VPN-3DES: Enabled
Maximum Interfaces: 256
Cut-through Proxy: Enabled
Guards: Enabled
URL-filtering: Enabled
Throughput: Unlimited
ISAKMP peers: Unlimited
Security Contexts: 2
This machine has an Unrestricted (UR) license.
Serial Number: ###########
Running Activation Key: 0x00000000 0x00000000 0x00000000 0x00000000
Configuration last modified by enable_15 at 04:50:25 May 12 2009
FWSM#
regarding above log, I must be changed to multiple configuration, after reload, the firewall mode is single, it is not changed to multiple mode. why?
your advice appreciate to me!
05-12-2009 12:16 AM
This document describes the steps used to configure multiple context in Firewall Service Module (FWSM).
pls rate
05-12-2009 12:33 AM
One thing on Cisco.com I found that may be of interest was this quote:
"Multiple context mode does not support dynamic routing protocols such as RIP and OSPF. Use static routing instead."
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: