<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Firepower VLAN Routing in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firepower-vlan-routing/m-p/4695530#M1093759</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1068407"&gt;@walkers33752&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;I assume you've got a core switch with the VLANs defined? Have you configured a default route on the switch to route to the Firewall's inside interface IP address?&lt;/P&gt;
&lt;P&gt;On the Firewall define a static route for the VLAN 21 network via next hop of the switch&amp;nbsp; IP address (VLAN 22)&lt;/P&gt;
&lt;P&gt;Create a Auto NAT rule configured on the Firewall to translate the VLAN 21 network behind the outside interface IP address.&lt;/P&gt;
&lt;P&gt;Create a rule in the Access Control Policy to permit traffic from the VLAN 21 network to the internet&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 28 Sep 2022 18:29:22 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2022-09-28T18:29:22Z</dc:date>
    <item>
      <title>Firepower VLAN Routing</title>
      <link>https://community.cisco.com/t5/network-security/firepower-vlan-routing/m-p/4695523#M1093758</link>
      <description>&lt;P&gt;I have a network with multiple VLANS.&lt;/P&gt;&lt;P&gt;We recently got a FP1120 which has a connection out to the internet. This device is on VLAN 22. Internet access (and ICMP replies) work from any device on VLAN 22.&lt;/P&gt;&lt;P&gt;Internet access (and ICMP replies from FP) do not work on any other VLAN. Access control is set to any ipv4 right now for testing purposes.&lt;/P&gt;&lt;P&gt;hosts on VLAN 21 can ping and access every other host on VLAN 22.&lt;/P&gt;</description>
      <pubDate>Wed, 28 Sep 2022 18:17:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-vlan-routing/m-p/4695523#M1093758</guid>
      <dc:creator>walkers33752</dc:creator>
      <dc:date>2022-09-28T18:17:52Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower VLAN Routing</title>
      <link>https://community.cisco.com/t5/network-security/firepower-vlan-routing/m-p/4695530#M1093759</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1068407"&gt;@walkers33752&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;I assume you've got a core switch with the VLANs defined? Have you configured a default route on the switch to route to the Firewall's inside interface IP address?&lt;/P&gt;
&lt;P&gt;On the Firewall define a static route for the VLAN 21 network via next hop of the switch&amp;nbsp; IP address (VLAN 22)&lt;/P&gt;
&lt;P&gt;Create a Auto NAT rule configured on the Firewall to translate the VLAN 21 network behind the outside interface IP address.&lt;/P&gt;
&lt;P&gt;Create a rule in the Access Control Policy to permit traffic from the VLAN 21 network to the internet&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 28 Sep 2022 18:29:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-vlan-routing/m-p/4695530#M1093759</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-09-28T18:29:22Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower VLAN Routing</title>
      <link>https://community.cisco.com/t5/network-security/firepower-vlan-routing/m-p/4695832#M1093764</link>
      <description>&lt;P&gt;If the endpoints on the other VLANs do not get any reply back from the FTD interface(s) then it would suggest there is some connectivity issues between the endpoints and the FTD. As&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;suggested, I would check the routing between the firewall and the core switch. If there is no routing on the core switch, I would suggest the ACP rules to make sure this traffic is allowed.&lt;/P&gt;</description>
      <pubDate>Thu, 29 Sep 2022 08:43:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-vlan-routing/m-p/4695832#M1093764</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2022-09-29T08:43:12Z</dc:date>
    </item>
  </channel>
</rss>

