cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
437
Views
5
Helpful
6
Replies

Question on 802.1q and PIX

jamey
Level 4
Level 4

I was looking at this document about PIX and 802.1q VLAN trunking:

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_sw/v_63/config/bafwcfg.htm#1140519

In this example there is a server in VLAN1. The physical interface of the pix is put in VLAN2 and a virtual interface is created for VLAN3. How would the server in VLAN1 get to the devices in the other VLANs in this case? Am I missing something?

-TIA

1 Accepted Solution

Accepted Solutions

scoclayton
Level 7
Level 7

Hi,

I think I understand your confusion. It looks to me like there is an error in Figure 2-9. The hosts above the distribution layer switch should be in VLAN 2 and VLAN 3 rather than VLAN 1 and VLAN 2. As you know, the default VLAN on any Cisco switch is VLAN 1 and we suggest that you not use this VLAN for anything in a production network. If you change the hosts in the figure to VLAN 2 and VLAN 3, does this example make more sense? In other words, look at the info and think about it as two seperate interfaces. Let me know if this is still not clear.

Scott

PS - I will open a bug to fix this example.

View solution in original post

6 Replies 6

scoclayton
Level 7
Level 7

Hi,

I think I understand your confusion. It looks to me like there is an error in Figure 2-9. The hosts above the distribution layer switch should be in VLAN 2 and VLAN 3 rather than VLAN 1 and VLAN 2. As you know, the default VLAN on any Cisco switch is VLAN 1 and we suggest that you not use this VLAN for anything in a production network. If you change the hosts in the figure to VLAN 2 and VLAN 3, does this example make more sense? In other words, look at the info and think about it as two seperate interfaces. Let me know if this is still not clear.

Scott

PS - I will open a bug to fix this example.

Makes sense to me...Thanks!

On a similar subject what is the correct command line syntax for creating an 802.1q virtual interface on a PIX physical interface?

I'm struggling with the syntax show in the manual.

Peter.

Are you asking for something other than:

[no] interface hardware_id vlan_id [logical | physical] [shutdown]

Example:

interface ethernet0 vlan3 logical

Let me know if this is not what you are looking for.

Scott

thanks, my mistake I was trying to use

interface ethernet0 vlan 3 logical

Good job Scott. I had the same problem understanding this figure and the VLAN config. Clears it up for me too.

Vito

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card