cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
670
Views
5
Helpful
1
Replies

How to permit the ISIS packet in ASA ?

wlsj
Level 1
Level 1

The ethertype of the ISIS is 0x83,Does the ASA support this type?how to let the hello or traffic pass the firewall in transperent mode?

thanks

1 Accepted Solution

Accepted Solutions

suschoud
Cisco Employee
Cisco Employee

Hi,

The transparent mode security appliance does not pass CDP packets or IPv6 packets, or any packets that do not have a valid EtherType greater than or equal to 0x600. For example, you cannot pass IS-IS packets. An exception is made for BPDUs, which are supported.

Reference :

http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/fwmode.html#wp1198794

Please rate if helps.

Regards,

Sushil

View solution in original post

1 Reply 1

suschoud
Cisco Employee
Cisco Employee

Hi,

The transparent mode security appliance does not pass CDP packets or IPv6 packets, or any packets that do not have a valid EtherType greater than or equal to 0x600. For example, you cannot pass IS-IS packets. An exception is made for BPDUs, which are supported.

Reference :

http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/fwmode.html#wp1198794

Please rate if helps.

Regards,

Sushil

Review Cisco Networking products for a $25 gift card