cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
388
Views
0
Helpful
7
Replies

PING between Inside to Outsiide in FWSM

CSCO10320953
Level 1
Level 1

Hi,

I am unable to ping from inside vlan100 interface 10.X.x.x to outside vlan 2interface 10.x.x.x in the FWSM.What is the problem and give the idea.

7 Replies 7

Jon Marshall
Hall of Fame
Hall of Fame

It could be quite a few things but the first thing to check is that the FWSM behaves slightly differently than pix or ASA firewalls.

On pix and asa firewalls traffic is allowed by default from a higher to a lower security interface. This is not the case with the FWSM, you need an access-list on the inside interface that allows the traffic.

Jon

HI,

access list is also done

Where are you pinging from and where are you pinging to ?

Have you configured NAT ?

Jon

After giving no nat control command ,its ping

Thanks lot

Okay, it would help if you could perhaps give a bit more info than just a quick sentence.

What is the device you are running the ping command on ?

What is the destination device you are pinging to ?

Are both your vlan interfaces on the FWSM in the up/up state ?

Jon

What is the device you are running the ping command on ?

4509 switch

What is the destination device you are pinging to ?

7500 series router

Are both your vlan interfaces on the FWSM in the up/up state ?

yes

Can you post config of

1) FWSM

2) 6500 switch which includes the "sh firewall vlan-group" command

Is the FWSM in single or multi context.

Is the FWSM in transparent or routed mode.

Jon

Review Cisco Networking products for a $25 gift card