Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

firewalling and nat between ethernet subinterfaces on 1700?

I'd like to use a 1721 router as a 'one-armed' firewall, i.e. routing and firewalling between vlan's on the FE interface of the router. Do the subinterfaces behave any different than physical interfaces for this purpose?

1 ACCEPTED SOLUTION

Accepted Solutions
Purple

Re: firewalling and nat between ethernet subinterfaces on 1700?

Hi,

There is no problem with what you are suggesting. You can use the 1721 for inter-vlan routing. You can then applies access-lists on the ethernet sub-interfaces to filter traffic between the VLANs.

In terms of routing capabilities, you can do anything on ethernet sub-interfaces that you can do on physical ethernet interfaces.

Hope that helps - pls rate the post if it does.

Paresh

1 REPLY
Purple

Re: firewalling and nat between ethernet subinterfaces on 1700?

Hi,

There is no problem with what you are suggesting. You can use the 1721 for inter-vlan routing. You can then applies access-lists on the ethernet sub-interfaces to filter traffic between the VLANs.

In terms of routing capabilities, you can do anything on ethernet sub-interfaces that you can do on physical ethernet interfaces.

Hope that helps - pls rate the post if it does.

Paresh

126
Views
0
Helpful
1
Replies
CreatePlease login to create content