<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco FPR-2110 as router on a stick in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795495#M1098727</link>
    <description>&lt;P&gt;Hi Rob, Its is client requirement and as communication between different between VLAN or network should happen through firewall. We will using DMZ switch for windows update server and voice recording server as voice recorder will get traffic from all VLAN in one direction only that is communication from all VLAN's to voice recorder only not in vice versa.&lt;/P&gt;</description>
    <pubDate>Thu, 16 Mar 2023 10:54:10 GMT</pubDate>
    <dc:creator>Mit_har</dc:creator>
    <dc:date>2023-03-16T10:54:10Z</dc:date>
    <item>
      <title>Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795387#M1098719</link>
      <description>&lt;P&gt;Hi, I want to know, can we use FPR-2110 firewall as router on stick?&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 09:48:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795387#M1098719</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-03-16T09:48:52Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795403#M1098720</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; yes you can, &lt;SPAN&gt;you create a subinterface on the FPR2110 for each VLAN to be routed.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 09:52:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795403#M1098720</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-03-16T09:52:44Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795410#M1098721</link>
      <description>&lt;P&gt;Yes since the FW is L3 device like Router and support subinerface, you can config it as router on stick.&amp;nbsp;&lt;BR /&gt;only make sure you config link to SW as trunk from SW side.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 09:57:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795410#M1098721</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-03-16T09:57:10Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795429#M1098722</link>
      <description>&lt;P&gt;HI Rob, Thanks for your reply. I have below scenario where we are using core switch with no routing functionality, only to create VLAN's. Routing between different VLAN should happen via firewall and come back to core switch on the same physical interface as there is only one physical link between firewall and core switch. We have requirement from client that routing should happen on firewall only. At the same time, I wanted to allow policy based forward to send the traffic from core switch network to DMZ switch network via firewall. is this design is correct?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="inhamit_0-1678960702949.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/179223i5AF52859BFAE70AF/image-size/medium?v=v2&amp;amp;px=400" role="button" title="inhamit_0-1678960702949.png" alt="inhamit_0-1678960702949.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 10:03:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795429#M1098722</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-03-16T10:03:03Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795460#M1098723</link>
      <description>&lt;P&gt;Hi, Thanks for your response.&amp;nbsp;&lt;SPAN&gt;I have below scenario where we are using core switch with no routing functionality, only to create VLAN's. Routing between different VLAN should happen via firewall and come back to core switch on the same physical interface as there is only one physical link between firewall and core switch. We have requirement from client that routing should happen on firewall only. At the same time, I wanted to allow policy based forward to send the traffic from core switch network to DMZ switch network via firewall. is this design correct?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="inhamit_0-1678961874138.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/179224iCDDF1E9719C278AB/image-size/medium?v=v2&amp;amp;px=400" role="button" title="inhamit_0-1678961874138.png" alt="inhamit_0-1678961874138.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 10:18:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795460#M1098723</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-03-16T10:18:16Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795479#M1098725</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; this seems overly complex (PBR) for a simple design. Why not just create a static route on the core switch for the Voice recording server network, via the FPR2110's inside interface IP address.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 10:37:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795479#M1098725</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-03-16T10:37:23Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795480#M1098726</link>
      <description>&lt;P&gt;NO issue,&amp;nbsp;&lt;BR /&gt;Core with VLAN x,y no ip routing&amp;nbsp;&lt;BR /&gt;FW have subinterface for VLAN x,y meaning the FW is GW for all client&amp;nbsp;&lt;BR /&gt;any traffic between x,y will pass through FW&amp;nbsp;&lt;BR /&gt;DMZ SW have vlan Z&amp;nbsp;no ip routing&amp;nbsp;&lt;BR /&gt;FW have subinterface for VLAN z meaning the FW is GW for all client&amp;nbsp;&lt;BR /&gt;the traffic will pass from x,y to z through FW&amp;nbsp;&lt;BR /&gt;so no problem&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 10:48:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795480#M1098726</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-03-16T10:48:12Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795495#M1098727</link>
      <description>&lt;P&gt;Hi Rob, Its is client requirement and as communication between different between VLAN or network should happen through firewall. We will using DMZ switch for windows update server and voice recording server as voice recorder will get traffic from all VLAN in one direction only that is communication from all VLAN's to voice recorder only not in vice versa.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 10:54:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795495#M1098727</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-03-16T10:54:10Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795496#M1098728</link>
      <description>&lt;P&gt;Thank you &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 10:55:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795496#M1098728</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-03-16T10:55:21Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795506#M1098729</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1109333"&gt;@Mit_har&lt;/a&gt; sure I understand, my suggestion was to route the traffic via the FW.&lt;/P&gt;
&lt;P&gt;The other option would be to configure the FW in transparent mode.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 11:00:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795506#M1098729</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-03-16T11:00:06Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FPR-2110 as router on a stick</title>
      <link>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795510#M1098730</link>
      <description>&lt;P&gt;HI Rob, Thanks for your reply. So our design is correct. we shall route the traffic via firewall from Vlan x to vlan y towards core switch on the same physical interface and at the same time we will allow PBR to forward the traffic from core switch to DMZ switch network.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 11:05:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-fpr-2110-as-router-on-a-stick/m-p/4795510#M1098730</guid>
      <dc:creator>Mit_har</dc:creator>
      <dc:date>2023-03-16T11:05:55Z</dc:date>
    </item>
  </channel>
</rss>

