I have the FWSM design and configuration guides, and feel like I'm buried in minutia regarding figuring out how to config for basic access into the module. Is there a "Quick Start Guide" or a white paper that describes BASIC things like how to set up access to the module from the 6500 and maybe a very SIMPLE example on settin up ports/vlan for passing traffic from a high-security side to a low-security side?
I first want to be able to just telnet into the module and upgrade the code on it. Then I'd like to begin very simply to work forward from there. I'm bogged down with trying to understand what is meant by 'before the MSCF' or 'after the MSCF' and can't even telnet into the module yet.
Firstly here's a link to a thread i was involved in some time ago that gives a basic setup. It may be of help to get you started -
To be able to telnet into it you need to access it initially from the CLI on the 6500. So lets say your FWSM is in slot 7 of your 6500 -
6500# session slot 7 proc 1
that should take you into the FWSM.
Before you telnet in you are going to have to setup the firewall - see link i provided.
I'm assuming to keep it simple you are using single context mode, if you want to use multiple context mode then things will be a bit more complicated.
Before or after the MSFC, altho personally i think behind an in front are more descriptive -
FWSM -> MSFC -> vlans
MSFC -> FWSM -> vlans
Basically Before involves the FWSM protecting all routed vlans on the MSFC because to get to the MSFC you have to go through the firewall. Think internet type connectivity altho it doesn't have to be internet.
After would be used where you don't necessarily want to firewall all vlans on the 6500. Think datacentre setup where external access is still from within your company but you still want to secure certain vlans only.
Note the example i gave in the link is for behind (after) MSFC.
Happy to try and help as much as i can.