Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

using other interface of PIX 515 as inside.

Hi Friends,

Can we make another interface as inside other than ethernet1, by the configuring security levels of interface.?

Thanks in advace.

Kamal

kashyap_kamal@rediffmail.com (pls reply on this email id)

3 REPLIES
Cisco Employee

Re: using other interface of PIX 515 as inside.

Hello Kashyap,

Yes, you can use other ethernet interfaces as an inside interface and change the security levels. That should not be an issue at all.

Rate this topic, if it helps.

Cheers

Gilbert

Community Member

Re: using other interface of PIX 515 as inside.

Hello Gilbert,

I configured the new interface with same security level of 100 as inside interface.

Everything works fine except the VPN tunnels.

And after wards reverted back to pervious configuration and found the VPN tunnels working fine.

My point of concern is do VPN Ipsec tunnels get affected after changing the inside interface to other physical interface.

Thanks!

Kamal

Cisco Employee

Re: using other interface of PIX 515 as inside.

Kamal,

Can you please let me know what changes were made on the PIX. And a snippet of the changes made would be helpful.

VPN traffic should not be affected.

1. After the change, did you see the tunnels on the PIX.

sh cry isa sa - would show that to you.

2. Did see packets decrypted on the PIX -

sh cry ipsec sa - would show you that.

3. What was your "nat" statement like, after the change?

Please let me know.

126
Views
0
Helpful
3
Replies
CreatePlease to create content