<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX 515E Configure In Transparent Mode in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803132#M1003213</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I guess yes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Transparent Firewall Mode&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX firewalls have always operated on IP packets, where all of the stateful traffic inspection is performed at Layer 3. This is usually called routed mode, where the firewall acts more or less as a router and has IP addresses applied to its own interfaces. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With PIX 7.0, a security appliance can be configured to operate in routed or transparent firewall mode. Transparent mode makes the firewall act more like a Layer 2 bridge, where packets are handled by MAC addresses. Although this prevents the firewall from using IP addresses on its interfaces (except for a single management address), the firewall still inspects traffic using IP addresses and all of the inspection rules youre used to seeing. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Transparent mode has several benefits: without interface IP addresses, the firewall has no detectable presence on the network and malicious users wont be able to find the firewall at all. In addition, the firewall can inspect other non-IP traffic based solely on the EtherType field in the packet headers. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH _ please rate all useful Posts&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 13 Jun 2007 11:40:44 GMT</pubDate>
    <dc:creator>anandramapathy</dc:creator>
    <dc:date>2007-06-13T11:40:44Z</dc:date>
    <item>
      <title>PIX 515E Configure In Transparent Mode</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803127#M1003208</link>
      <description>&lt;P&gt;Sir,&lt;/P&gt;&lt;P&gt; I have Pix515E-R with 16 MB &lt;/P&gt;&lt;P&gt;With IOS 6.3 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want to configute Transparent mode &lt;/P&gt;&lt;P&gt;in my pix , Suggest me what should &lt;/P&gt;&lt;P&gt;I Do.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanking You&lt;/P&gt;&lt;P&gt;Dipak Parmar&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 10:29:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803127#M1003208</guid>
      <dc:creator>dipak-parmar</dc:creator>
      <dc:date>2019-03-11T10:29:22Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E Configure In Transparent Mode</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803128#M1003209</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Before that go through this url &lt;/P&gt;&lt;P&gt;It is important to know what transparent mode can support &amp;amp; what not&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/security/asa/asa71/configuration/guide/fwmode.html#wp1201980" target="_blank"&gt;http://www.cisco.com/en/US/docs/security/asa/asa71/configuration/guide/fwmode.html#wp1201980&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The command is &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;firewall transparent&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;*** Procedure to configure transparent mode ***&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Take a look at the link below for the config&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/security/asa/asa71/configuration/guide/examples.html#wp1010043" target="_blank"&gt;http://www.cisco.com/en/US/docs/security/asa/asa71/configuration/guide/examples.html#wp1010043&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2007 10:07:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803128#M1003209</guid>
      <dc:creator>anandramapathy</dc:creator>
      <dc:date>2007-06-13T10:07:56Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E Configure In Transparent Mode</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803129#M1003210</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for Your support&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;my IOS can not support&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;firewall transparent command&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Should I have to upgrade My IOS ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2007 11:10:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803129#M1003210</guid>
      <dc:creator>dipak-parmar</dc:creator>
      <dc:date>2007-06-13T11:10:36Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E Configure In Transparent Mode</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803130#M1003211</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;what version are you running ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2007 11:12:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803130#M1003211</guid>
      <dc:creator>anandramapathy</dc:creator>
      <dc:date>2007-06-13T11:12:58Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E Configure In Transparent Mode</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803131#M1003212</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;sir ,&lt;/P&gt;&lt;P&gt;its 6.3&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2007 11:20:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803131#M1003212</guid>
      <dc:creator>dipak-parmar</dc:creator>
      <dc:date>2007-06-13T11:20:23Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E Configure In Transparent Mode</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803132#M1003213</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I guess yes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Transparent Firewall Mode&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX firewalls have always operated on IP packets, where all of the stateful traffic inspection is performed at Layer 3. This is usually called routed mode, where the firewall acts more or less as a router and has IP addresses applied to its own interfaces. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With PIX 7.0, a security appliance can be configured to operate in routed or transparent firewall mode. Transparent mode makes the firewall act more like a Layer 2 bridge, where packets are handled by MAC addresses. Although this prevents the firewall from using IP addresses on its interfaces (except for a single management address), the firewall still inspects traffic using IP addresses and all of the inspection rules youre used to seeing. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Transparent mode has several benefits: without interface IP addresses, the firewall has no detectable presence on the network and malicious users wont be able to find the firewall at all. In addition, the firewall can inspect other non-IP traffic based solely on the EtherType field in the packet headers. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH _ please rate all useful Posts&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2007 11:40:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803132#M1003213</guid>
      <dc:creator>anandramapathy</dc:creator>
      <dc:date>2007-06-13T11:40:44Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E Configure In Transparent Mode</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803133#M1003214</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks for this wonderful support,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I want to upgrade IOS 6.3 to 7.6&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is there any hardware configuration changes ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have pux515E-R With 16mb RAM&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2007 12:06:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803133#M1003214</guid>
      <dc:creator>dipak-parmar</dc:creator>
      <dc:date>2007-06-13T12:06:04Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E Configure In Transparent Mode</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803134#M1003215</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear anandramapathy,&lt;/P&gt;&lt;P&gt;  &lt;/P&gt;&lt;P&gt;        how I use third Port in Transparant Mode &lt;/P&gt;&lt;P&gt;Or I can use only two ports in transparent mode &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanking you&lt;/P&gt;&lt;P&gt;Dipak Parmar&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Jun 2007 09:57:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803134#M1003215</guid>
      <dc:creator>dipak-parmar</dc:creator>
      <dc:date>2007-06-18T09:57:37Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E Configure In Transparent Mode</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803135#M1003216</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Third interface is not supported. Check the url below&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Transparent mode?In transparent mode the PIX does not have IP addresses&lt;/P&gt;&lt;P&gt;assigned to its interfaces. Instead it acts as a Layer 2 bridge that&lt;/P&gt;&lt;P&gt;maintains a MAC address table and makes forwarding decisions based on that.&lt;/P&gt;&lt;P&gt;The use of full extended IP access lists is still available and the&lt;/P&gt;&lt;P&gt;firewall can inspect IP activity at any layer. In this mode of operation&lt;/P&gt;&lt;P&gt;the PIX is often referred to as a "bump in the wire" or "stealth firewall".&lt;/P&gt;&lt;P&gt;There are other significant differences as to how transparent mode operates&lt;/P&gt;&lt;P&gt;in comparison to routed mode:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Only two interfaces are supported?inside and outside&lt;/P&gt;&lt;P&gt;NAT is not supported or required since the PIX is no longer a hop.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_qanda_item09186a00805b87d8.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_qanda_item09186a00805b87d8.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Jun 2007 10:32:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-configure-in-transparent-mode/m-p/803135#M1003216</guid>
      <dc:creator>anandramapathy</dc:creator>
      <dc:date>2007-06-18T10:32:52Z</dc:date>
    </item>
  </channel>
</rss>

