<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Forwarding loop - FWSM in VSS chassis in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/forwarding-loop-fwsm-in-vss-chassis/m-p/1524715#M579331</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am not sure if I follow you. You are saying that when you traceroute you do not see the FWSM as a hop? Well the firewall never shows itself as a hop. On the ASA there is a way to decrement TTL but not on the FWSM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the arp entry is correct pls. check the "sh mac-address-table vlan &lt;NUMBER&gt;" and see if the FWSM mac is seen on the vlans that it firewalls.&lt;/NUMBER&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You are correct there is no FWSM code 7.2.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/cgi-bin/tablebuild.pl/cat6000-fwsm"&gt;http://www.cisco.com/cgi-bin/tablebuild.pl/cat6000-fwsm&lt;/A&gt;&lt;BR /&gt; &lt;BR /&gt; Click on the All new releases will be available "here"&lt;BR /&gt; &lt;BR /&gt; The latest in the 3.1.x train 3.1.(19)&lt;BR /&gt; The latest in the 4.0 train is 4.0.13&lt;BR /&gt; The latest in the 3.2 train is 3.2.(19)&lt;BR /&gt; The latest in the 4.1 train is 4.1(3)&lt;BR /&gt; ASDM is asdm-62(1)f.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 29 Nov 2010 00:09:43 GMT</pubDate>
    <dc:creator>Kureli Sankar</dc:creator>
    <dc:date>2010-11-29T00:09:43Z</dc:date>
    <item>
      <title>Forwarding loop - FWSM in VSS chassis</title>
      <link>https://community.cisco.com/t5/network-security/forwarding-loop-fwsm-in-vss-chassis/m-p/1524714#M579330</link>
      <description>&lt;P&gt;We have a but of an oddity. We have an FWSM in a 6500 VSS stack, and some traffic appears to be forwarded back to the switch.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have a transit LAN between the VRF on the 6500 and the FWSM. All routing appears correct - the route via the FWSM points to the IP of the FWSM. The Arp entry is correct, but for some entries that should be beyond the firewall if we do a tracert from the 6500 all responses are the outgoing interface address of the 6500.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I was told the SW was 7.2.1., but that does not appear valid for FWSM!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Some addresses for the target VLAN seem OK!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Has anyone seen similar?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:15:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/forwarding-loop-fwsm-in-vss-chassis/m-p/1524714#M579330</guid>
      <dc:creator>paul.matthews</dc:creator>
      <dc:date>2019-03-11T19:15:11Z</dc:date>
    </item>
    <item>
      <title>Re: Forwarding loop - FWSM in VSS chassis</title>
      <link>https://community.cisco.com/t5/network-security/forwarding-loop-fwsm-in-vss-chassis/m-p/1524715#M579331</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am not sure if I follow you. You are saying that when you traceroute you do not see the FWSM as a hop? Well the firewall never shows itself as a hop. On the ASA there is a way to decrement TTL but not on the FWSM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the arp entry is correct pls. check the "sh mac-address-table vlan &lt;NUMBER&gt;" and see if the FWSM mac is seen on the vlans that it firewalls.&lt;/NUMBER&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You are correct there is no FWSM code 7.2.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/cgi-bin/tablebuild.pl/cat6000-fwsm"&gt;http://www.cisco.com/cgi-bin/tablebuild.pl/cat6000-fwsm&lt;/A&gt;&lt;BR /&gt; &lt;BR /&gt; Click on the All new releases will be available "here"&lt;BR /&gt; &lt;BR /&gt; The latest in the 3.1.x train 3.1.(19)&lt;BR /&gt; The latest in the 4.0 train is 4.0.13&lt;BR /&gt; The latest in the 3.2 train is 3.2.(19)&lt;BR /&gt; The latest in the 4.1 train is 4.1(3)&lt;BR /&gt; ASDM is asdm-62(1)f.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Nov 2010 00:09:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/forwarding-loop-fwsm-in-vss-chassis/m-p/1524715#M579331</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2010-11-29T00:09:43Z</dc:date>
    </item>
  </channel>
</rss>

