Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

Unknown interface vlan on fwsm

ive done the ff. on the msfc

firewall module 2 vlan-group 1

firewall vlan-group 1 100,200,300

interface Vlan100

no ip address

!

interface Vlan200

no ip address

shutdown

!

interface Vlan300

no ip address

shutdown

BUT WHEN I DO THE FF ON THE FWSM

int vlan 300

i get the foloowing

FWSM# conf t

FWSM(config)# int vlan 300

Unknown interface vlan.

the fwsm is not recognizing my vlan. what is missing?

thanks

9 REPLIES
Hall of Fame Super Blue

Re: Unknown interface vlan on fwsm

Hi

Have you created the vlans at Layer 2 ie. if you do a "sh vlan" on the 6500 do you see your vlans ?

You do not create layer 2 vlans by entering

int vlan300

no ip address

shutdown.

If you want vlan 300 to be firewalled then please

1) remove the "interface vlan 300" from the 6500 ie.

6500(config)# no interface vlan 300

2) Add the vlan at layer 2 on the 6500 ie.

6500(config)# vlan 300

6500(config-vlan)# name vlan300

Do this for all vlans you want to firewall.

Jon

New Member

Re: Unknown interface vlan on fwsm

Router#sh firewall vlan-group 1

Group Created by vlans

----- ---------- -----

1 FWSM 100,200,300

sh vlan

100 vlan100 active

200 vlan200 active

300 vlan300 active

but still the same on fwsm

FWSM(config)# int vlan 300

Unknown interface vlan.

FWSM(config)#

Hall of Fame Super Blue

Re: Unknown interface vlan on fwsm

Is yout firewall running in single mode or multiple context mode ?

Jon

New Member

Re: Unknown interface vlan on fwsm

but on the fwsm sh vlan

FWSM# sh vlan

100, 200, 300

FWSM#

Hall of Fame Super Blue

Re: Unknown interface vlan on fwsm

Is yout firewall running in single mode or multiple context mode ?

Jon

New Member

Re: Unknown interface vlan on fwsm

i was just running single mode initialy

New Member

Re: Unknown interface vlan on fwsm

FWSM Device Manager Version 4.1(5)

and i was just wondering why the nameif command is on the

FWSM(config)# nameif ?

Usage: nameif

no nameif [if_name] [security_lvl]

i was expecting it to be ion the interface mode

New Member

Re: Unknown interface vlan on fwsm

another thing, the fwsm OS looks like old one

FWSM Version 2.3(4)

New Member

Re: Unknown interface vlan on fwsm

JON...THIS IS AN IOS ISSUE...LUCKILYY I KNOW A BIT OF THE OLD PIX OS...IT WORKS BUT ILL LET CISCO UPGRADE IT...ITS HAVING PDM TOO

THANKS A LOT

687
Views
8
Helpful
9
Replies
CreatePlease to create content