<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PXE Boot on inside interface in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pxe-boot-on-inside-interface/m-p/1877077#M490050</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Mike,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the three shows give emtpy respond, NAT is not enabled cause of using public ip addresses.&lt;/P&gt;&lt;P&gt;The version of FWSM software is 4.1(7) and runs in routed mode, multi context.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Juergen&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 27 Dec 2011 16:50:02 GMT</pubDate>
    <dc:creator>juergen.stader</dc:creator>
    <dc:date>2011-12-27T16:50:02Z</dc:date>
    <item>
      <title>PXE Boot on inside interface</title>
      <link>https://community.cisco.com/t5/network-security/pxe-boot-on-inside-interface/m-p/1877075#M490028</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i have difficulties to get PXE-Boot working in following scenario:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Client is in Subnet 1 behind the FWSM (inside interface).&lt;/P&gt;&lt;P&gt;Server is in Subnet 2 behind the FWSM (inside interface).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Both, client and server have public IP-addresses, so no NAT is needed.&lt;/P&gt;&lt;P&gt;DHCP Relay is configured (pxe-server as interface servers, trusted=yes), Relay agent ist anabled, set route is disabled.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the real-time log i get this error:&lt;/P&gt;&lt;P&gt;portmap translation creation failed for udp src server:PXE-Server/62510 dst subnet1:IP/67&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(IP in this case is the address of the FWSM interface on subnet 1, not the address from the client).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿Any suggestions?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:06:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pxe-boot-on-inside-interface/m-p/1877075#M490028</guid>
      <dc:creator>juergen.stader</dc:creator>
      <dc:date>2019-03-11T22:06:54Z</dc:date>
    </item>
    <item>
      <title>Re: PXE Boot on inside interface</title>
      <link>https://community.cisco.com/t5/network-security/pxe-boot-on-inside-interface/m-p/1877076#M490030</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Juergen,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The syslog you see is for the DHCP response from the server back to the GIADDR IP (i.e. the FWSM) for use in DHCP relay. This is the expected behavior per RFC 2131:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;"If the 'giaddr' field in a DHCP message from a client is non-zero, the&lt;/P&gt;&lt;P&gt;server sends any return messages to the 'DHCP server' port on the BOOTP&lt;/P&gt;&lt;P&gt;relay agent whose address appears in 'giaddr'."&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check the output of 'show run nat', 'show run global', and 'show run static' and make sure you don't have any rules that would overlap with this traffic. Also, let us know what version of FWSM software you're running and whether this is in routed or transparent mode.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Dec 2011 16:25:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pxe-boot-on-inside-interface/m-p/1877076#M490030</guid>
      <dc:creator>mirober2</dc:creator>
      <dc:date>2011-12-27T16:25:53Z</dc:date>
    </item>
    <item>
      <title>Re: PXE Boot on inside interface</title>
      <link>https://community.cisco.com/t5/network-security/pxe-boot-on-inside-interface/m-p/1877077#M490050</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Mike,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the three shows give emtpy respond, NAT is not enabled cause of using public ip addresses.&lt;/P&gt;&lt;P&gt;The version of FWSM software is 4.1(7) and runs in routed mode, multi context.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Juergen&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Dec 2011 16:50:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pxe-boot-on-inside-interface/m-p/1877077#M490050</guid>
      <dc:creator>juergen.stader</dc:creator>
      <dc:date>2011-12-27T16:50:02Z</dc:date>
    </item>
  </channel>
</rss>

