Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Step-by-Step Configuration and Troubleshooting Best Practices for the NGFW, NGIPS and AMP Technologies A Visual Guide to the Cisco Firepower Threat Defense (FTD)
Community Member

FWSM + ACE bridged servers moving from server to client vlan

I have a MSFC -> FWSM(A/S FO) -> ACE(FO) design using 2 security contexts, with the ACE modules in bridged mode. I notice the servers on the server side VLAN(501) on the ACE module sometimes show up on the client side VLAN(500), when I do a show arp on the ACE module. This causes the ACE probe to fail. To fix the problem I clear the arp table on the FWSM and the ACE module. The servers use the FWSM as the default gateway.

I have assigned VLAN's on the MSFC as below, and placed the servers into VLAN 501:

svclc autostate

svclc multiple-vlan-interfaces

svclc module 7 vlan-group 1,2

svclc vlan-group 1 500

svclc vlan-group 2 96,501

svclc vlan-group 3 89,90

svclc vlan-group 5 70,71,94,95

firewall multiple-vlan-interfaces

firewall module 2 vlan-group 1,3,5

Any idea's?

1 REPLY
Bronze
144
Views
0
Helpful
1
Replies
CreatePlease to create content