cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
576
Views
0
Helpful
2
Replies

bvi and vlan traffic through router

ruessd-wawa
Level 1
Level 1

I have a 2811 router with a single BVI to a 2960 switch with 3 vlans. There is a transparent firewall on the 2811 router. Currently, traffic between 2 nodes on the same vlan segment traverses the transparent firewall causing latency. Is there a way to configure the vlan on the switch such that traffic will not be passed through the firewall when not leaving the vlan?

For example, a LAN based Nessus scan of hosts on VLAN1 from a port on VLAN1 causes the utilization on the router memory and processor to 100%. Thanks,

Dave

2 Replies 2

John Blakley
VIP Alumni
VIP Alumni

Are you running CBAC or a zone based firewall? Where is the policy for the firewall applied?

HTH,

John

HTH, John *** Please rate all useful posts ***

Zone based firewall, policy is applied to the BVIs. Such as

policy-map type inspect BVI1

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card