<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco ISA 3000 Subinterfaces and Zone in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-isa-3000-subinterfaces-and-zone/m-p/4313243#M1079571</link>
    <description>&lt;P&gt;Hello Guys&lt;/P&gt;&lt;P&gt;I have standalone ISA 3000 (Transparent mode ) with FTD 6.6.1 managed by FMC which I need to connect to dual-core switch keeping the bypass functionality&lt;/P&gt;&lt;P&gt;there are several VLANs which will be connected to the firewall&amp;nbsp; . The firewall will have inside and outside interfaces&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The challenge which I am facing is to create sub-interfaces with the Same VLAN ID on two different interfaces so I got an idea to assign GI 1/1 for outside and GI 1/2 for inside and keep any subinterface without zone like&lt;/P&gt;&lt;P&gt;GI 1/1 ( Outside zone)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; GI 1/2 ( inside zone)&lt;/P&gt;&lt;P&gt;GI 1/1 -- &amp;gt; Create sub interface Gi 1/1.11 VLAN ID 11&amp;nbsp; ( no zone assigned )&lt;/P&gt;&lt;P&gt;GI 1/2 -- &amp;gt; Create Sub interface Gi 1/2.11 VLAN ID 11 ( No zone assigned)&lt;/P&gt;&lt;P&gt;Create BVI 11 for both 1/1.11 and 1/2.11 with BVI IP in VLAN 11 .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does the sub-interface inhert the Security zone from the parent interface , for example GI 1/1.11 will inhert Outside side since GI 1/1 is Outside interface ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 24 Mar 2021 17:55:15 GMT</pubDate>
    <dc:creator>Wabou_224</dc:creator>
    <dc:date>2021-03-24T17:55:15Z</dc:date>
    <item>
      <title>Cisco ISA 3000 Subinterfaces and Zone</title>
      <link>https://community.cisco.com/t5/network-security/cisco-isa-3000-subinterfaces-and-zone/m-p/4313243#M1079571</link>
      <description>&lt;P&gt;Hello Guys&lt;/P&gt;&lt;P&gt;I have standalone ISA 3000 (Transparent mode ) with FTD 6.6.1 managed by FMC which I need to connect to dual-core switch keeping the bypass functionality&lt;/P&gt;&lt;P&gt;there are several VLANs which will be connected to the firewall&amp;nbsp; . The firewall will have inside and outside interfaces&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The challenge which I am facing is to create sub-interfaces with the Same VLAN ID on two different interfaces so I got an idea to assign GI 1/1 for outside and GI 1/2 for inside and keep any subinterface without zone like&lt;/P&gt;&lt;P&gt;GI 1/1 ( Outside zone)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; GI 1/2 ( inside zone)&lt;/P&gt;&lt;P&gt;GI 1/1 -- &amp;gt; Create sub interface Gi 1/1.11 VLAN ID 11&amp;nbsp; ( no zone assigned )&lt;/P&gt;&lt;P&gt;GI 1/2 -- &amp;gt; Create Sub interface Gi 1/2.11 VLAN ID 11 ( No zone assigned)&lt;/P&gt;&lt;P&gt;Create BVI 11 for both 1/1.11 and 1/2.11 with BVI IP in VLAN 11 .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does the sub-interface inhert the Security zone from the parent interface , for example GI 1/1.11 will inhert Outside side since GI 1/1 is Outside interface ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 24 Mar 2021 17:55:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-isa-3000-subinterfaces-and-zone/m-p/4313243#M1079571</guid>
      <dc:creator>Wabou_224</dc:creator>
      <dc:date>2021-03-24T17:55:15Z</dc:date>
    </item>
  </channel>
</rss>

