Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Step-by-Step Configuration and Troubleshooting Best Practices for the NGFW, NGIPS and AMP Technologies A Visual Guide to the Cisco Firepower Threat Defense (FTD)
New Member

Hybrid 6500 IDSM-2 inline vlan pair mode

I am having a problem understanding how a packet is going to know that it needs to get evaluated by the IDSM if it is being sent to a host on a different vlan. First lets say that the server is on a vlan that is being pair and the server host is configured with the GW address of the paired vlan. So if a different host on a different vlan sent a packet to that server how does the MSFC know to sent the packet to the paried vlan to get routed to the servers vlan instead of routing it directly to the servers vlan that is attached to it(msfc). FYI. I followed the admin guides to set this up and it does not cover design or operation packet flows.

5 REPLIES
Bronze

Re: Hybrid 6500 IDSM-2 inline vlan pair mode

Cisco CatOS on the Cisco Catalyst 6500 Series with optional Cisco IOS Software on the Multilayer Switching Feature Card (MSFC) provides Layer 2/3/4 functionality for the Cisco Catalyst 6500 by integrating two operating systems. A switch running CatOS only on the Supervisor Engine is a Layer 2 forwarding device with Layer 2/3/4 functionality for QoS, security, multicast, and network management of the Policy Feature Card (PFC), but does not have any routing capabilities. Layer 3 routing functionality is provided via a Cisco IOS Software image on the MSFC routing engine (optional in Supervisor 1A and 2, and integrated within Supervisor 32 and 720.) In this paper, the combination of CatOS on the Supervisor Engine and Cisco IOS Software on the MSFC is referred to as the "hybrid" OS; two operating systems work together to provide complete Layer 2/3/4 system functionality.

New Member

Re: Hybrid 6500 IDSM-2 inline vlan pair mode

Thanks for the reply but I was specifically talking about the IDSM integration with the Hybrid CAT with the IDSM running in inline vlan pair mode..

New Member

Re: Hybrid 6500 IDSM-2 inline vlan pair mode

I was trying to find admin guide regarding VLAN pairing - can you send me the URL.

New Member
New Member

Re: Hybrid 6500 IDSM-2 inline vlan pair mode

I did mange to figure it out, I just had to sit in a boring meeting and then it me. Create an addtional vlan on the msfc and delete the old vlan interface where the clients are. Give the new vlan int the address of the original client vlan int. Make the new vlan on the CATOS and leave the client vlan on the switch (catos), making it a non routed vlan and then let the IDSM bridge the two following admin guide and poof inspection can be done.

213
Views
1
Helpful
5
Replies
CreatePlease to create content