cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
278
Views
0
Helpful
1
Replies

firewalling and nat between ethernet subinterfaces on 1700?

hpoel
Level 1
Level 1

I'd like to use a 1721 router as a 'one-armed' firewall, i.e. routing and firewalling between vlan's on the FE interface of the router. Do the subinterfaces behave any different than physical interfaces for this purpose?

1 Accepted Solution

Accepted Solutions

pkhatri
Level 11
Level 11

Hi,

There is no problem with what you are suggesting. You can use the 1721 for inter-vlan routing. You can then applies access-lists on the ethernet sub-interfaces to filter traffic between the VLANs.

In terms of routing capabilities, you can do anything on ethernet sub-interfaces that you can do on physical ethernet interfaces.

Hope that helps - pls rate the post if it does.

Paresh

View solution in original post

1 Reply 1

pkhatri
Level 11
Level 11

Hi,

There is no problem with what you are suggesting. You can use the 1721 for inter-vlan routing. You can then applies access-lists on the ethernet sub-interfaces to filter traffic between the VLANs.

In terms of routing capabilities, you can do anything on ethernet sub-interfaces that you can do on physical ethernet interfaces.

Hope that helps - pls rate the post if it does.

Paresh

Review Cisco Networking products for a $25 gift card