<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FWSM Multiple-contexts Configuration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fwsm-multiple-contexts-configuration/m-p/1207319#M877034</link>
    <description>&lt;P&gt;Dear NetPros;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any limitation or precautions when implementing multiple-contexts plus shared VLAN with MSFC?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm currently using multiple-contexts with seperate VLANs with MSFC and my new FWSM will be configured with shared VLAN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any opinion would be appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Charles&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 14:44:10 GMT</pubDate>
    <dc:creator>changjoo_cust</dc:creator>
    <dc:date>2019-03-11T14:44:10Z</dc:date>
    <item>
      <title>FWSM Multiple-contexts Configuration</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-multiple-contexts-configuration/m-p/1207319#M877034</link>
      <description>&lt;P&gt;Dear NetPros;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any limitation or precautions when implementing multiple-contexts plus shared VLAN with MSFC?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm currently using multiple-contexts with seperate VLANs with MSFC and my new FWSM will be configured with shared VLAN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any opinion would be appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Charles&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 14:44:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-multiple-contexts-configuration/m-p/1207319#M877034</guid>
      <dc:creator>changjoo_cust</dc:creator>
      <dc:date>2019-03-11T14:44:10Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Multiple-contexts Configuration</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-multiple-contexts-configuration/m-p/1207320#M877035</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Multiple context mode does not support the following features:&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;• Most dynamic routing protocols. BGP stub mode is supported.&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;• Multicast routing. Multicast bridging is supported.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now Shared interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Problem with FWSM is that it has only one MAC address. When vlans are shared among multiple contexts the FWSM's "Classifer" selects the appropriate context on the basis of&amp;nbsp; Destination address of the traffic only. This requires setting up Static NAT rules on contexts to enable "classifier" to make decisions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since for Internet/outbond traffic you dont know all the destinations and cannot create NAT rules for all destinations, It is not possible to share inside interfaces of the contexts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sharing is also not possible and permitted between Transparent Contexts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sharing Vlans needs to be avoided whereever possible with FWSM for simplicity Sake..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Syed iftekhar Ahmed&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 31 Jan 2009 03:03:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-multiple-contexts-configuration/m-p/1207320#M877035</guid>
      <dc:creator>Syed Iftekhar Ahmed</dc:creator>
      <dc:date>2009-01-31T03:03:38Z</dc:date>
    </item>
  </channel>
</rss>

