cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
367
Views
0
Helpful
1
Replies

Swap interface names on pix (FWSM)

Ruterford
Level 1
Level 1

Hi All,

I have a couple of interfaces on my FWSM module in 65 switch. I need to swap the nameifs on the interafces.

One of them is named "outside" and the other one is named "outside1". Outside1 is a new interface that is going to face new internet connection. I have a bunch of static and global NAT translations pointing out to "outside" interface, which is going to be swapped.

My question is if I go like this:

1.

interface Vlan 10

no nameif outside

2.

interface Vlan 11

no nameif outside1

3.

interface Vlan 10

nameif outside 1

4.

interface Vlan 11

nameif outside

Will PIX allow me to do that?

Will I need to recreate all NAT static and Global translations?

Will I need to recreate all ACLs?

Thanks!

1 Accepted Solution

Accepted Solutions

Julio Carvajal
VIP Alumni
VIP Alumni

Hello Olbert,

1-Yes, it is going to be like that

2- You will need to recreate the nat translation as soon as you make the changes because they were created to be natted from specific source and destination zones, and this ones are going to be deleted eventhoug are just like 20 seconds.

3-No, what you are going to loose are the access-group so just match the access-list with the interface in the correct direction and you will be ready.

Please rate helpful post.

Have a great day,

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

View solution in original post

1 Reply 1

Julio Carvajal
VIP Alumni
VIP Alumni

Hello Olbert,

1-Yes, it is going to be like that

2- You will need to recreate the nat translation as soon as you make the changes because they were created to be natted from specific source and destination zones, and this ones are going to be deleted eventhoug are just like 20 seconds.

3-No, what you are going to loose are the access-group so just match the access-list with the interface in the correct direction and you will be ready.

Please rate helpful post.

Have a great day,

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
Review Cisco Networking products for a $25 gift card