<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Fwsm not forwarding traffic in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fwsm-not-forwarding-traffic/m-p/2699035#M190944</link>
    <description>&lt;P&gt;I have a firewall service module in a 6500. Lately traffic from lower interfaces within the LAN is not forwarded to higher interface. &amp;nbsp;Created a capture and I&amp;nbsp;can&amp;nbsp;see traffic on the ingress interface and its not forwarded on the egress interface.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have no nat control enabled on the firewall. &amp;nbsp;I don't have a nat exempt for traffic that is not an outside&amp;nbsp;connection.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;configs have been working and now this issue started.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have created static nat to solve the issue as a temporal mesure. &amp;nbsp;I would like to find a permanent solution for this, please share some ideas.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 06:03:14 GMT</pubDate>
    <dc:creator>Sithembiso Nhlozi</dc:creator>
    <dc:date>2019-03-12T06:03:14Z</dc:date>
    <item>
      <title>Fwsm not forwarding traffic</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-not-forwarding-traffic/m-p/2699035#M190944</link>
      <description>&lt;P&gt;I have a firewall service module in a 6500. Lately traffic from lower interfaces within the LAN is not forwarded to higher interface. &amp;nbsp;Created a capture and I&amp;nbsp;can&amp;nbsp;see traffic on the ingress interface and its not forwarded on the egress interface.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have no nat control enabled on the firewall. &amp;nbsp;I don't have a nat exempt for traffic that is not an outside&amp;nbsp;connection.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;configs have been working and now this issue started.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have created static nat to solve the issue as a temporal mesure. &amp;nbsp;I would like to find a permanent solution for this, please share some ideas.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:03:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-not-forwarding-traffic/m-p/2699035#M190944</guid>
      <dc:creator>Sithembiso Nhlozi</dc:creator>
      <dc:date>2019-03-12T06:03:14Z</dc:date>
    </item>
    <item>
      <title>Hi,I think as you were able</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-not-forwarding-traffic/m-p/2699036#M190945</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I think as you were able to see the traffic incoming and not going out from the FWSM , I think first steps should be to check the debugging syslog on the FWSM and see the reason for the packet to be dropped.&lt;/P&gt;&lt;P&gt;Also , to verify , can you post the NAT configuration and the requirement with IP Addresses ?&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Fri, 05 Jun 2015 08:45:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-not-forwarding-traffic/m-p/2699036#M190945</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-06-05T08:45:14Z</dc:date>
    </item>
    <item>
      <title>Hi Vibhor, I always had the</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-not-forwarding-traffic/m-p/2699037#M190946</link>
      <description>&lt;P&gt;Hi Vibhor,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I always had the command below allowing all connections to pass without natting&lt;/P&gt;&lt;P&gt;FWSM/contcorp# sh run all | i no nat&lt;BR /&gt;no nat-control&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now I have to create static nat to allow traffic as below&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;static (inside,finance) 172.28.16.27 172.28.16.27 netmask 255.255.255.255 tcp 2000 0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Some of the connections are not passed though the firewaal even if I exempt it from nat.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is the problem I'm facing lateley on the FWSM Firewall Version 4.1. Haven't found any documantation with this issue and solution&lt;/P&gt;</description>
      <pubDate>Mon, 08 Jun 2015 19:13:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-not-forwarding-traffic/m-p/2699037#M190946</guid>
      <dc:creator>Sithembiso Nhlozi</dc:creator>
      <dc:date>2015-06-08T19:13:40Z</dc:date>
    </item>
  </channel>
</rss>

