Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Step-by-Step Configuration and Troubleshooting Best Practices for the NGFW, NGIPS and AMP Technologies A Visual Guide to the Cisco Firepower Threat Defense (FTD)
New Member

FWSM failover pair on 3.1(3) - OSPF problem?

2x 6513/MSFC with FWSM in each, controlling staff/student access to internal servers. 6513s are trunked together, so vlans 10 and 20 appear on each.

OSPF on all devices.

workstation on vlan10 routes to 6513-A (via hsrp-address)

then via vlan 20 to FWSM-A (active state)

FWSM-A has the same OSPF cost to 6513-A and to 6513-B, which both interface to vlan 10, so FWSM-A has equal-cost routes back to vlan 10 via both switches.

I'm not sure if this IS a problem, but it doesn't sound too clever.

I wanted to try -

router ospf 1

neighbor b.b.b.b cost 100

on the FWSM to "un-equal" the cost, but the command doesn't allow "cost"

Any ideas?

3 REPLIES
Gold

Re: FWSM failover pair on 3.1(3) - OSPF problem?

can you set the interface cost on the firewall port?

New Member

Re: FWSM failover pair on 3.1(3) - OSPF problem?

Yes....

FWSM-Server-Firewall(config-if)# ospf cost 100

.... but the new cost then applies to both 6513s - there's no option to specify different costs for different neighbors.

Silver

Re: FWSM failover pair on 3.1(3) - OSPF problem?

set channel vlancost {Vlan} 10

set spantree portvlancost 3/47 cost 16 1-1005

set spantree portcost

Regards,

Dharmesh Purohit

197
Views
0
Helpful
3
Replies
CreatePlease to create content